← Back

CVE-2004-0893

nvd nist
Published: Jan 10, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properly validate the lengths of messages sent to the LPC port, which allows local users to gain privileges, aka "Windows Kernel Vulnerability."

Affected (57)

4 products
Windows 2000
Windows 2003 Server
Windows Nt
Windows Xp
Configuration A
57 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
All versions
All versions
Microsoft
Version datacenter_64-bit sp1_beta_1
Version enterprise
Version enterprise sp1_beta_1
Version enterprise_64-bit
Version enterprise_64-bit sp1_beta_1
Version r2
Version r2
Version r2 sp1_beta_1
Version standard
Version standard sp1_beta_1
Version web
Version web sp1_beta_1
Microsoft
Version 4.0
Version 4.0
Version 4.0
Version 4.0
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp1
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp2
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp3
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp4
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp5
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6
Version 4.0 sp6a
Version 4.0 sp6a
Version 4.0 sp6a
Microsoft
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions

References (20)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.