Back

CVE-2005-0803

The GetEnhMetaFilePaletteEntries API in GDI32.DLL in Windows 2000 allows remote attackers to cause a denial of service (application crash) via a crafted Enhanced Metafile (EMF) file that causes invalid (1) end, (2) emreof, or (3) palent offsets to be used, aka "Enhanced Metafile Vulnerability."

Published: May 2, 2005 Modified: Jun 16, 2026
CWE-399

CVSS Metrics

Affected Products (5)

Vendor Product Version
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *
microsoft windows_2000 *

GitHub Security Advisory GHSA-5724-mx26-9j89

The GetEnhMetaFilePaletteEntries API in GDI32.DLL in Windows 2000 allows remote attackers to...

Risk Scores

CVSS Score 5.0 / 10
EPSS Score 67.69%

Top 1% most likely to be exploited

Threat Score 40.3 / 100

Data Sources

NVD EPSS GitHub