CVE-2009-0229
Summary
| CVE | CVE-2009-0229 |
|---|---|
| State | PUBLISHED |
| Assigner | microsoft |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2009-06-10 18:00:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows local users to read arbitrary files via a crafted separator page, aka "Print Spooler Read File Vulnerability." |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
NoneAvailability
NoneAV:L/AC:L/Au:N/C:C/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Microsoft | Windows 2000 | sp4 | All | All | All |
| Operating System | Microsoft | Windows 2003 Server | sp2 | All | All | All |
| Operating System | Microsoft | Windows 2003 Server | sp2 | All | itanium | All |
| Operating System | Microsoft | Windows 2003 Server | sp2 | All | x64 | All |
| Operating System | Microsoft | Windows Server 2008 | All | All | x64 | All |
| Operating System | Microsoft | Windows Server 2008 | - | sp2 | itanium | All |
| Operating System | Microsoft | Windows Server 2008 | - | x32 | All | All |
| Operating System | Microsoft | Windows Server 2008 | sp2 | x32 | All | All |
| Operating System | Microsoft | Windows Server 2008 | sp2 | x64 | All | All |
| Operating System | Microsoft | Windows Vista | All | sp1 | All | All |
| Operating System | Microsoft | Windows Vista | All | sp2 | All | All |
| Operating System | Microsoft | Windows Vista | gold | All | All | All |
| Operating System | Microsoft | Windows Vista | sp1 | All | All | All |
| Operating System | Microsoft | Windows Vista | sp2 | All | All | All |
| Operating System | Microsoft | Windows Xp | - | All | All | All |
| Operating System | Microsoft | Windows Xp | - | sp2 | x64 | All |
| Operating System | Microsoft | Windows Xp | sp3 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ASA-2009-217 (961501) | af854a3a-2127-422b-91ae-364da2661108 | support.avaya.com | |
| US-CERT Technical Cyber Security Alert TA09-160A -- Microsoft Updates for Multiple Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.us-cert.gov | US Government Resource |
| Microsoft Windows Print Spooler Multiple Vulnerabilities - Secunia Advisories - Vulnerability Information - Secunia.com | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| osvdb.org/54933 | af854a3a-2127-422b-91ae-364da2661108 | osvdb.org | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| Microsoft Windows Print Spooler Local Information Disclosure Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| Microsoft Security Bulletin MS09-022 - Critical | Microsoft Docs | af854a3a-2127-422b-91ae-364da2661108 | docs.microsoft.com | |
| SecurityTracker.com Archives - Windows Print Spooler Lets Remote Users Execute Arbitrary Code and Local Users Read Arbitrary Files | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.