CVE-2007-2237
CVE-2007-2237
Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, which triggers a divide-by-zero error.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/4044unverifiedexploitdbwww.exploit-db.com/exploits/30160unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://osvdb.org/38494https://exchange.xforce.ibmcloud.com/vulnerabilities/34743https://www.exploit-db.com/exploits/4044http://www.csis.dk/dk/forside/GdiPlus.pdfhttp://www.kb.cert.org/vuls/id/290961http://www.securityfocus.com/archive/1/470746/100/0/threadedhttp://www.securityfocus.com/bid/24346http://www.securitytracker.com/id?1018202http://www.vupen.com/english/advisories/2007/2083