← Back

CVE-2003-0659

nvd nist
Published: Nov 17, 2003Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.

Affected (49)

4 products
Windows 2000
Windows 2003 Server
Windows Nt
Windows Xp
Configuration A
49 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
All versions
All versions
Microsoft
Version enterprise
Version enterprise_64-bit
Version r2
Version r2
Version standard
Version web
Microsoft
Version 4.0
Version 4.0
Version 4.0
Version 4.0
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6a
Version 4.0 sp6a
Version 4.0 sp6a
Microsoft
All versions
All versions
All versions
All versions
All versions
All versions
All versions

References (18)

Source: cve@mitre.org
US Government Resource
Source: cve@mitre.org
PatchThird Party AdvisoryUS Government Resource
Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.