Back

CVE-2004-0123

Double free vulnerability in the ASN.1 library as used in Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service and possibly execute arbitrary code.

Published: Jun 1, 2004 Modified: Jun 16, 2026
CWE-119

CVSS Metrics

Affected Products (7)

Vendor Product Version
microsoft windows_2000 *
microsoft windows_2003_server r2
microsoft windows_98 *
microsoft windows_98se *
microsoft windows_me *
microsoft windows_nt 4.0
microsoft windows_xp *

GitHub Security Advisory GHSA-mp49-4xhv-78fw

Double free vulnerability in the ASN.1 library as used in Windows NT 4.0, Windows 2000, Windows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 29.75%

Top 2% most likely to be exploited

Threat Score 38.9 / 100

Data Sources

NVD EPSS GitHub