CVE-2006-2376
Integer overflow in the PolyPolygon function in Graphics Rendering Engine on Microsoft Windows 98 and Me allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) or EMF image with a sum of entries in the vertext counts array and…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 41.1%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Integer overflow in the PolyPolygon function in Graphics Rendering Engine on Microsoft Windows 98 and Me allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) or EMF image with a sum of entries in the vertext counts array and number of polygons that triggers a heap-based buffer overflow.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 41.10% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-189
- Affected
- microsoft/windows 98 · microsoft/windows 98se · microsoft/windows me
- Source
- secure@microsoft.com
References
- http://secunia.com/advisories/20631Patch, Vendor Advisory
- http://securityreason.com/securityalert/1094
- http://securitytracker.com/id?1016286
- http://www.kb.cert.org/vuls/id/909508US Government Resource
- http://www.osvdb.org/26431
- http://www.securityfocus.com/archive/1/436950/100/0/threaded
- http://www.securityfocus.com/bid/18322
- http://www.us-cert.gov/cas/techalerts/TA06-164A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/2324Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-026
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26815
- http://secunia.com/advisories/20631Patch, Vendor Advisory
- http://securityreason.com/securityalert/1094
- http://securitytracker.com/id?1016286
- http://www.kb.cert.org/vuls/id/909508US Government Resource
- http://www.osvdb.org/26431
- http://www.securityfocus.com/archive/1/436950/100/0/threaded
- http://www.securityfocus.com/bid/18322
- http://www.us-cert.gov/cas/techalerts/TA06-164A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/2324Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-026
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26815
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.