peter bassill · operator
$ cve CVE-2004-1305 JSON

CVE-2004-1305 EXPLOIT

5.0
MEDIUM · CVSS 2.0 · EPSS 58.6% (pctl 99)

Patch early

A public exploit exists.

Description

The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.

Scoring

CVSS5.0 (MEDIUM, v2.0)
VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS58.58% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2004-12-23
Last modified2026-06-16

Affected (19)

VendorProduct
microsoftwindows 2000
microsoftwindows 2003 server
microsoftwindows 98
microsoftwindows 98se
microsoftwindows me
microsoftwindows nt
microsoftwindows xp
nortelip softphone 2050
nortelmedia communication server 5100
nortelmedia communication server 5200
nortelmedia processing server
nortelperiphonics
nortelsymposium agent
nortelsymposium call center server
nortelsymposium express call center
nortelsymposium network control center
nortelsymposium tapi service provider
nortelsymposium web centre portal
nortelsymposium web client

Public exploits

SourceTitleDate
exploit-dbMicrosoft Windows Kernel - '.ANI' File Parsing Crash2004-12-25

References

→ the Explorer  ·  watch your stack  ·  NVD