CVE-2007-2237
Status: ModifiedMedium (5.5)—💥 Exploit
Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, which triggers a divide-by-zero error.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- Base score: 5.5
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 15%
- Percentile among all scored CVEs: 97
- Score date: 10/8/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
💥 Public exploits
Exploit code or detection templates are publicly available. This is not the same as confirmed active exploitation (KEV), but it raises the risk: patch with priority.
- Published on Exploit-DB · Microsoft Windows - GDI+ '.ICO' File Remote Denial of Service (6/7/2007)
- Published on Exploit-DB · Microsoft Windows XP - GDI+ '.ICO' File Remote Denial of Service (6/6/2007)
Affected technologies (1)
CWEs
- CWE-369
References
- http://osvdb.org/38494
- http://www.csis.dk/dk/forside/GdiPlus.pdf
- http://www.kb.cert.org/vuls/id/290961
- http://www.securityfocus.com/archive/1/470746/100/0/threaded
- http://www.securityfocus.com/bid/24346
- http://www.securitytracker.com/id?1018202
- http://www.vupen.com/english/advisories/2007/2083
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34743
- https://www.exploit-db.com/exploits/4044
- http://osvdb.org/38494
- http://www.csis.dk/dk/forside/GdiPlus.pdf
- http://www.kb.cert.org/vuls/id/290961
- http://www.securityfocus.com/archive/1/470746/100/0/threaded
- http://www.securityfocus.com/bid/24346
- http://www.securitytracker.com/id?1018202
- http://www.vupen.com/english/advisories/2007/2083
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34743
- https://www.exploit-db.com/exploits/4044
Raw JSON (NVD)
Show
{
"id": "CVE-2007-2237",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 7.1,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:C",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "COMPLETE",
"confidentialityImpact": "NONE"
},
"acInsufInfo": false,
"impactScore": 6.9,
"baseSeverity": "HIGH",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.5,
"attackVector": "LOCAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H",
"integrityImpact": "NONE",
"userInteraction": "REQUIRED",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "NONE"
},
"impactScore": 3.6,
"exploitabilityScore": 1.8
}
]
},
"affected": [
{
"source": "cret@cert.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2007-06-06T20:30:00.000",
"references": [
{
"url": "http://osvdb.org/38494",
"tags": [
"Broken Link"
],
"source": "cret@cert.org"
},
{
"url": "http://www.csis.dk/dk/forside/GdiPlus.pdf",
"tags": [
"Broken Link"
],
"source": "cret@cert.org"
},
{
"url": "http://www.kb.cert.org/vuls/id/290961",
"tags": [
"Third Party Advisory",
"US Government Resource"
],
"source": "cret@cert.org"
},
{
"url": "http://www.securityfocus.com/archive/1/470746/100/0/threaded",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "cret@cert.org"
},
{
"url": "http://www.securityfocus.com/bid/24346",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "cret@cert.org"
},
{
"url": "http://www.securitytracker.com/id?1018202",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "cret@cert.org"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2083",
"tags": [
"Broken Link"
],
"source": "cret@cert.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34743",
"tags": [
"VDB Entry",
"Vendor Advisory"
],
"source": "cret@cert.org"
},
{
"url": "https://www.exploit-db.com/exploits/4044",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "cret@cert.org"
},
{
"url": "http://osvdb.org/38494",
"tags": [
"Broken Link"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.csis.dk/dk/forside/GdiPlus.pdf",
"tags": [
"Broken Link"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.kb.cert.org/vuls/id/290961",
"tags": [
"Third Party Advisory",
"US Government Resource"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/archive/1/470746/100/0/threaded",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/24346",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securitytracker.com/id?1018202",
"tags": [
"Broken Link",
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2007/2083",
"tags": [
"Broken Link"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34743",
"tags": [
"VDB Entry",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.exploit-db.com/exploits/4044",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-369"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containing a Height of zero, which triggers a divide-by-zero error."
},
{
"lang": "es",
"value": "Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) permite a atacantes remotos dependientes de contexto provocar una denegación de servicio (caída) mediante un fichero ICO con una información de cabecera (InfoHeader) con una altura de cero, lo cual provoca un error de división por cero."
}
],
"lastModified": "2026-06-16T22:39:11.863",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "34DF3B5E-F17F-49B4-9DC8-06749F3C9CC3"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cret@cert.org"
}