← Vulnerability feed

Vulnerability record · CVE-2005-1793 · published 1 June 2005

CVE-2005-1793: Microsoft windows 98se vulnerability

Microsoft · Windows 98se

User32.DLL in Microsoft Windows 98SE, and possibly other operating systems, allows local and remote attackers to cause a denial of service (crash) via an icon (.ico) bitmap file with large width and height values.

2.6 CVSS 2.0 Low EPSS 7.4% · top 5.8%
2.6CVSS 2.0 base score
7.4%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
16 Jun 2026Last modified by NVD

Description

User32.DLL in Microsoft Windows 98SE, and possibly other operating systems, allows local and remote attackers to cause a denial of service (crash) via an icon (.ico) bitmap file with large width and height values.

AV:N/AC:H/Au:N/C:N/I:N/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-1793 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2005-0059Microsoft Windows Message Queuing buffer overflow allows remote code executionThe Message Queuing component in Microsoft Windows 2000 and Windows XP SP1 contains a buffer overflow that can be triggered by a crafted message. A r…EPSS 73%analysed10.0CVE-2004-0571Microsoft windows 2000 vulnerabilityMicrosoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via…EPSS 31%10.0CVE-2004-0901Microsoft windows 2000 vulnerabilityMicrosoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote att…EPSS 32%10.0CVE-2004-0597libpng PNG chunk buffer overflows allow remote code executionlibpng 1.2.5 and earlier contain multiple buffer overflows in the png_handle_tRNS, png_handle_sBIT and png_handle_hIST functions, which fail to valid…EPSS 83%analysed10.0CVE-2004-0201Microsoft HTML Help hh.exe heap buffer overflow via crafted CHM fileThe HTML Help program (hh.exe) in multiple Microsoft Windows versions contains a heap-based buffer overflow triggered by a .CHM file with a large len…EPSS 45%analysed10.0CVE-2002-1257Microsoft windows 2000 vulnerabilityMicrosoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that i…EPSS 15%9.8CVE-2000-1218Microsoft windows 2000 origin validation error vulnerabilityThe default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which …EPSS 6.3%9.3CVE-2006-0006Windows Media Player bitmap heap buffer overflowA heap-based buffer overflow exists in the bitmap processing routine of Windows Media Player. A crafted .BMP file that declares a size of 0 but carri…EPSS 50%analysed

Source: NIST National Vulnerability Database (record CVE-2005-1793), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.