CVE-2004-1361
Integer underflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allows remote attackers to execute arbitrary code via a malformed .hlp file, which leads to a heap-based buffer overflow.
- Affected products
- Windows 2000, Windows 2003, Windows Nt, Windows Xp, Winhlp32.Exe
- Microsoft Windows 2000
- All versions
- Microsoft Windows 2003 Server
- = enterprise, enterprise_64-bit, R2, standard, web
- Microsoft Windows Nt
- = 4.0
- Microsoft Windows Xp
- All versions
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 20.0% (97th percentile)
- NVD status
- Modified
- Published
- 2005-01-19
CVE-2004-1361 at NVD
No indexed exploits for CVE-2004-1361 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2004-1361 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.