Oval Definition:oval:org.mitre.oval:def:147
Revision Date:2011-05-16Version:45
Title:Windows 2000 Shell Buffer Overflow
Description:Buffer overflow in Windows Shell (used as the Windows Desktop) allows local and possibly remote attackers to execute arbitrary code via a custom URL handler that has not been removed for an application that has been improperly uninstalled.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2002-0070
Platform(s):Microsoft Windows 2000
Product(s):Windows Shell
Definition Synopsis
  • Windows 2000 (sp3 or earlier) is installed
  • Windows 2000 is installed
  • AND NOT Win2K/XP/2003 service pack 4 (or later) is installed
  • AND the version of shell32.dll is less than 5.0.3502.4718
  • AND NOT Patch Q313829 Installed
  • BACK