HTTP: Microsoft Windows ANI File Denial of Service

This signature detects attempts to exploit a known vulnerability in the Microsoft Windows ANI file parser. A successful attack can result in a denial-of-service condition.

Extended Description

Microsoft Windows is prone to a denial of service when processing specially formed ANI files. The Windows kernel fails to perform proper sanitization on the frame or rate number set in the ANI file header, which may result in a system crash.

Affected Products

Microsoft windows_98

Short Name
HTTP:STC:IMG:ANI-FILE-DOS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
ANI CVE-2004-1305 Denial File Microsoft Service Windows bid:12094 of
Release Date
01/28/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Nortel_networks

Microsoft

CVSS Score

5.0

Found a potential security threat?