The graphics device interface (GDI) implementation in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate input received from user mode, which allows remote attackers to execute arbitrary code via a crafted (1) Windows Metafile (aka WMF) or (2) Enhanced Metafile (aka EMF) image file, aka "Windows Kernel Input Validation Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2009-03-10T20:00:00
Updated: 2024-08-07T04:24:16.982Z
Reserved: 2009-01-08T00:00:00
Link: CVE-2009-0081
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-03-10T20:30:00.343
Modified: 2024-11-21T00:59:00.813
Link: CVE-2009-0081
Redhat
No data.