CVE-2003-0818 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 82.2% (pctl 100)
Patch early
A public exploit exists.
Description
Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries on Windows NT 4.0, 2000, and XP, allow remote attackers to execute arbitrary code via ASN.1 BER encodings with (1) very large length fields that cause arbitrary heap data to be overwritten, or (2) modified bit strings.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 82.24% — more likely to be exploited than 100% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2004-03-03 |
| Last modified | 2026-06-16 |
Affected (4)
| Vendor | Product |
|---|---|
| microsoft | windows 2000 |
| microsoft | windows 2003 server |
| microsoft | windows nt |
| microsoft | windows xp |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows - ASN.1 Library Bitstring Heap Overflow (MS04-007) (Metasploit) | 2010-07-25 |
| exploit-db | Microsoft Windows - ASN.1 Remote (MS04-007) | 2004-03-26 |
| exploit-db | Microsoft Windows - ASN.1 'LSASS.exe' Remote Denial of Service (MS04-007) | 2004-02-14 |
References
- http://marc.info/?l=bugtraq&m=107643836125615&w=2
- http://marc.info/?l=bugtraq&m=107643892224825&w=2
- http://marc.info/?l=ntbugtraq&m=107650972617367&w=2
- http://marc.info/?l=ntbugtraq&m=107650972723080&w=2
- http://www.kb.cert.org/vuls/id/216324
- http://www.kb.cert.org/vuls/id/583108
- http://www.us-cert.gov/cas/techalerts/TA04-041A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-007
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A653
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A796
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A797
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A799
- http://marc.info/?l=bugtraq&m=107643836125615&w=2
- http://marc.info/?l=bugtraq&m=107643892224825&w=2
- http://marc.info/?l=ntbugtraq&m=107650972617367&w=2
- http://marc.info/?l=ntbugtraq&m=107650972723080&w=2
- http://www.kb.cert.org/vuls/id/216324
- http://www.kb.cert.org/vuls/id/583108
- http://www.us-cert.gov/cas/techalerts/TA04-041A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-007
→ the Explorer · watch your stack · NVD