CVE-2011-0041 EXPLOIT
9.3
HIGH · CVSS 2.0 · EPSS 28.2% (pctl 98)
Patch early
A public exploit exists.
Description
Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold and SP2, and Office XP SP3 allows remote attackers to execute arbitrary code via a crafted EMF image, aka "GDI+ Integer Overflow Vulnerability."
Scoring
| CVSS | 9.3 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
| EPSS | 28.16% — more likely to be exploited than 98% of all CVEs |
| Weakness | CWE-189 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2011-04-13 |
| Last modified | 2026-06-16 |
Affected (6)
| Vendor | Product |
|---|---|
| microsoft | office |
| microsoft | windows 2003 server |
| microsoft | windows server 2003 |
| microsoft | windows server 2008 |
| microsoft | windows vista |
| microsoft | windows xp |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | GDI+ - 'gdiplus.dll' CreateDashedPath Integer Overflow | 2011-07-18 |
References
- http://www.us-cert.gov/cas/techalerts/TA11-102A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-029
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11854
- http://www.us-cert.gov/cas/techalerts/TA11-102A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-029
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11854
→ the Explorer · watch your stack · NVD