Buffer overflow in the CreateDIBPalette function in win32k.sys in Microsoft Windows XP SP3, Server 2003 R2 Enterprise SP2, Vista Business SP1, Windows 7, and Server 2008 SP2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by performing a clipboard operation (GetClipboardData API function) with a crafted bitmap with a palette that contains a large number of colors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2010-09-07T17:00:00Z
Updated: 2024-09-16T20:43:28.961Z
Reserved: 2010-07-14T00:00:00Z
Link: CVE-2010-2739
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-09-07T18:00:02.120
Modified: 2024-06-24T17:15:09.680
Link: CVE-2010-2739
Redhat
No data.