CVE-2003-0659

Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.

Scoring

CVSS base score
0.14
EPSS probability
3.57%
Published
2003-10-17
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs