{"api_version":"1","generated_at":"2026-07-23T07:59:42+00:00","cve":"CVE-2005-2124","urls":{"html":"https://cve.report/CVE-2005-2124","api":"https://cve.report/api/cve/CVE-2005-2124.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2005-2124","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2005-2124"},"summary":{"title":"CVE-2005-2124","description":"Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to \"An unchecked buffer\" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka \"Windows Metafile Vulnerability.\"","state":"PUBLISHED","assigner":"microsoft","published_at":"2005-11-29 21:03:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.6","severity":"","vector":"AV:N/AC:H/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-053","name":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-053","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Microsoft Security Bulletin MS05-053 - Critical | Microsoft Docs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securityreason.com/securityalert/161","name":"http://securityreason.com/securityalert/161","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Windows Metafile Multiple Heap Overflows - CXSecurity.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/433341","name":"http://www.kb.cert.org/vuls/id/433341","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"],"title":"US-CERT Vulnerability Note VU#433341","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1015168","name":"http://securitytracker.com/id?1015168","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityTracker.com Archives - Microsoft Windows Buffer Overflows in Graphics Rendering Engine Lets Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/15356","name":"http://www.securityfocus.com/bid/15356","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Microsoft Windows Graphics Rendering Engine WMF Format Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2005/2348","name":"http://www.vupen.com/english/advisories/2005/2348","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail - OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA05-312A.html","name":"http://www.us-cert.gov/cas/techalerts/TA05-312A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA05-312A -- Microsoft Windows Image Processing Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.eeye.com/html/research/advisories/AD20051108b.html","name":"http://www.eeye.com/html/research/advisories/AD20051108b.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"Network Security, Vulnerability Assessment, Intrusion Prevention","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.eeye.com/html/research/advisories/AD20051108a.html","name":"http://www.eeye.com/html/research/advisories/AD20051108a.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Network Security, Vulnerability Assessment, Intrusion Prevention","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/17498","name":"http://secunia.com/advisories/17498","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Microsoft Windows WMF/EMF File Rendering Arbitrary Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/17223","name":"http://secunia.com/advisories/17223","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Nortel Centrex IP Client Manager Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf","name":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"application/pdf","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/17461","name":"http://secunia.com/advisories/17461","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Secunia - Advisories - Avaya Products Microsoft Windows WMF/EMF Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2005-2124","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2005-2124","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2000","cpe6":"*","cpe7":"sp4","cpe8":"*","cpe9":"fr","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2003_server","cpe6":"64-bit","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2003_server","cpe6":"itanium","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2003_server","cpe6":"r2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2003_server","cpe6":"sp1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_2003_server","cpe6":"sp1","cpe7":"*","cpe8":"itanium","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_xp","cpe6":"*","cpe7":"*","cpe8":"64-bit","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_xp","cpe6":"*","cpe7":"sp1","cpe8":"tablet_pc","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2005","cve_id":"2124","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"microsoft","cpe5":"windows_xp","cpe6":"*","cpe7":"sp2","cpe8":"tablet_pc","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T22:15:37.432Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf"},{"name":"17461","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17461"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.eeye.com/html/research/advisories/AD20051108a.html"},{"name":"161","tags":["third-party-advisory","x_refsource_SREASON","x_transferred"],"url":"http://securityreason.com/securityalert/161"},{"name":"ADV-2005-2348","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2005/2348"},{"name":"1015168","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1015168"},{"name":"TA05-312A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA05-312A.html"},{"name":"17223","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17223"},{"name":"17498","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/17498"},{"name":"MS05-053","tags":["vendor-advisory","x_refsource_MS","x_transferred"],"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-053"},{"name":"15356","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/15356"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.eeye.com/html/research/advisories/AD20051108b.html"},{"name":"VU#433341","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/433341"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2005-11-08T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to \"An unchecked buffer\" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka \"Windows Metafile Vulnerability.\""}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-12T19:57:01.000Z","orgId":"f38d906d-7342-40ea-92c1-6c4a2c6478c8","shortName":"microsoft"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf"},{"name":"17461","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17461"},{"tags":["x_refsource_MISC"],"url":"http://www.eeye.com/html/research/advisories/AD20051108a.html"},{"name":"161","tags":["third-party-advisory","x_refsource_SREASON"],"url":"http://securityreason.com/securityalert/161"},{"name":"ADV-2005-2348","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2005/2348"},{"name":"1015168","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1015168"},{"name":"TA05-312A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA05-312A.html"},{"name":"17223","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17223"},{"name":"17498","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/17498"},{"name":"MS05-053","tags":["vendor-advisory","x_refsource_MS"],"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-053"},{"name":"15356","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/15356"},{"tags":["x_refsource_MISC"],"url":"http://www.eeye.com/html/research/advisories/AD20051108b.html"},{"name":"VU#433341","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/433341"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"secure@microsoft.com","ID":"CVE-2005-2124","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to \"An unchecked buffer\" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka \"Windows Metafile Vulnerability.\""}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf","refsource":"CONFIRM","url":"http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf"},{"name":"17461","refsource":"SECUNIA","url":"http://secunia.com/advisories/17461"},{"name":"http://www.eeye.com/html/research/advisories/AD20051108a.html","refsource":"MISC","url":"http://www.eeye.com/html/research/advisories/AD20051108a.html"},{"name":"161","refsource":"SREASON","url":"http://securityreason.com/securityalert/161"},{"name":"ADV-2005-2348","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2005/2348"},{"name":"1015168","refsource":"SECTRACK","url":"http://securitytracker.com/id?1015168"},{"name":"TA05-312A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA05-312A.html"},{"name":"17223","refsource":"SECUNIA","url":"http://secunia.com/advisories/17223"},{"name":"17498","refsource":"SECUNIA","url":"http://secunia.com/advisories/17498"},{"name":"MS05-053","refsource":"MS","url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-053"},{"name":"15356","refsource":"BID","url":"http://www.securityfocus.com/bid/15356"},{"name":"http://www.eeye.com/html/research/advisories/AD20051108b.html","refsource":"MISC","url":"http://www.eeye.com/html/research/advisories/AD20051108b.html"},{"name":"VU#433341","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/433341"}]}}}},"cveMetadata":{"assignerOrgId":"f38d906d-7342-40ea-92c1-6c4a2c6478c8","assignerShortName":"microsoft","cveId":"CVE-2005-2124","datePublished":"2005-11-29T21:00:00.000Z","dateReserved":"2005-07-02T00:00:00.000Z","dateUpdated":"2024-08-07T22:15:37.432Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2005-11-29 21:03:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:H/Au:N/C:C/I:C/A:C","baseScore":7.6,"accessVector":"NETWORK","accessComplexity":"HIGH","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":4.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2000:*:sp4:*:fr:*:*:*:*","matchCriteriaId":"330B6798-5380-44AD-9B52-DF5955FA832C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2003_server:64-bit:*:*:*:*:*:*:*","matchCriteriaId":"D2CA1674-A8A0-479A-9D80-344D3C563A24"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2003_server:itanium:*:*:*:*:*:*:*","matchCriteriaId":"0808041A-CE1A-433A-9C2B-019097CCFB0C"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2003_server:r2:*:*:*:*:*:*:*","matchCriteriaId":"4E7FD818-322D-4089-A644-360C33943D29"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*","matchCriteriaId":"644E2E89-F3E3-4383-B460-424D724EE62F"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_2003_server:sp1:*:itanium:*:*:*:*:*","matchCriteriaId":"7D11FC8D-59DD-4CAC-B4D3-DABB7A9903F1"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_xp:*:*:64-bit:*:*:*:*:*","matchCriteriaId":"91D6D065-A28D-49DA-B7F4-38421FF86498"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_xp:*:sp1:tablet_pc:*:*:*:*:*","matchCriteriaId":"B9687E6C-EDE9-42E4-93D0-C4144FEC917A"},{"vulnerable":true,"criteria":"cpe:2.3:o:microsoft:windows_xp:*:sp2:tablet_pc:*:*:*:*:*","matchCriteriaId":"FB2BE2DE-7B06-47ED-A674-15D45448F357"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2005","CveId":"2124","Ordinal":"1","Title":"CVE-2005-2124","CVE":"CVE-2005-2124","Year":"2005"},"notes":[{"CveYear":"2005","CveId":"2124","Ordinal":"1","NoteData":"Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to \"An unchecked buffer\" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka \"Windows Metafile Vulnerability.\"","Type":"Description","Title":"CVE-2005-2124"},{"CveYear":"2005","CveId":"2124","Ordinal":"2","NoteData":"2005-11-29","Type":"Other","Title":"Published"},{"CveYear":"2005","CveId":"2124","Ordinal":"3","NoteData":"2018-10-12","Type":"Other","Title":"Modified"}]}}}