CVE-2007-0041
published 2007-07-10CVE-2007-0041: The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute arbitrary…
PriorityP354critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
30.67%
98.0th percentile
The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute arbitrary code via unspecified vectors involving an "unchecked buffer" and unvalidated message lengths, probably a buffer overflow.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | net_framework | — | — |
| microsoft | net_framework | — | — |
| microsoft | net_framework | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →CVE-2007-0041 was patched in Microsoft Security Bulletin MS07-040; detection/patching context is the .NET Framework PE Loader service handling unvalidated message lengths (buffer overflow) in Microsoft .NET Framework 1.0, 1.1, and 2.0. ↗
- ·The vulnerability involves an 'unchecked buffer' and unvalidated message lengths in the PE Loader service; the attack vector and specific payload format are unspecified in public disclosures, limiting precise signature development. ↗
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW
blogs_talos·2017-08-29·CVSS 9.3
[CRITICAL] Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW
## Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW
Vulnerability discovered by Cory Duplantis of Cisco Talos. Update : 9/1/17 - National Instruments has published the following advisory
## Overview
LabVIEW is a system design and development platform released by National Instruments. The software is widely used to create applications for data acquisition, instrument control and industrial automation. Talos is disclosing the presence of a potential code execution vulnerability which can be triggered by opening specially crafted VI files, the proprietary file format used by LabVIEW.
## TALOS-2017-0273 code execution vulnerability (CVE-2017-2779)
The VI file format describes various systems implemented in LabVIEW. Although there is no published specification for the file
Talos
Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW
blogs_talos·2017-08-29·CVSS 9.3
[CRITICAL] Vulnerability Spotlight: Code Execution Vulnerability in LabVIEW
Vulnerability discovered by Cory Duplantis of Cisco Talos.
Update: 9/1/17 - National Instruments has published the following advisory
## Overview
LabVIEW is a system design and development platform released by National Instruments. The software is widely used to create applications for data acquisition, instrument control and industrial automation. Talos is disclosing the presence of a potential code execution vulnerability which can be triggered by opening specially crafted VI files, the proprietary file format used by LabVIEW.
### TALOS-2017-0273 code execution vulnerability (CVE-2017-2779)
The VI file format describes various systems implemented in LabVIEW. Although there is no published specification for the file format, inspecting the files shows that they contain a section named
http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.htmlhttp://osvdb.org/35954http://secunia.com/advisories/26003http://www.securityfocus.com/bid/24778http://www.securitytracker.com/id?1018356http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlhttp://www.vupen.com/english/advisories/2007/2482https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-040https://exchange.xforce.ibmcloud.com/vulnerabilities/34637https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2093http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.htmlhttp://osvdb.org/35954http://secunia.com/advisories/26003http://www.securityfocus.com/bid/24778http://www.securitytracker.com/id?1018356http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlhttp://www.vupen.com/english/advisories/2007/2482https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-040https://exchange.xforce.ibmcloud.com/vulnerabilities/34637https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2093
2007-07-10
Published