CVE-2005-2119

Exp

The MIDL_user_allocate function in the Microsoft Distributed Transaction Coordinator (MSDTC) proxy (MSDTCPRX.DLL) allocates a 4K page of memory regardless of the required size, which allows attackers to overwrite arbitrary memory locations using an incorrect size value that is provided to the NdrAllocate function, which writes management data to memory outside of the allocated buffer.

Published: 2005-10-12 Last update: 2026-04-16 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2005-2119 is rated High Exploit Risk (70.5/100): CVSS Medium severity, with high exploitation likelihood (EPSS 59.35%, 98th percentile). Core evidence: 2 public exploit reference(s) are indexed (Exploit-DB). EPSS rose +1.11% over the last day, indicating growing attacker interest. Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2005-2119

EDB-ID Source Kind Published Link
1352 exploit_db edb 2005-12-01 Exploit-DB ↗
1341 exploit_db edb 2005-11-27 Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2005-2119

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2025-12-28 58.23% 59.35% +1.11%
2 2025-12-27 59.35% 58.23% -1.11%
3 2025-10-28 59.35%

Full EPSS history (17 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2005-2119

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
5.0 2.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:N)
No confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:N)
No availability impact.
10.0 2.9 [email protected]

Weakness enumeration for CVE-2005-2119

Affected software / configurations for CVE-2005-2119

Vendor Product Version Raw CPE
microsoft windows_2000 cpe:2.3:o:microsoft:windows_2000:*:sp4:*:fr:*:*:*:*
microsoft windows_2003_server 64-bit cpe:2.3:o:microsoft:windows_2003_server:64-bit:*:*:*:*:*:*:*
microsoft windows_2003_server itanium cpe:2.3:o:microsoft:windows_2003_server:itanium:*:*:*:*:*:*:*
microsoft windows_2003_server r2 cpe:2.3:o:microsoft:windows_2003_server:r2:*:*:*:*:*:*:*
microsoft windows_2003_server sp1 cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*
microsoft windows_2003_server sp1 cpe:2.3:o:microsoft:windows_2003_server:sp1:*:itanium:*:*:*:*:*
microsoft windows_xp cpe:2.3:o:microsoft:windows_xp:*:*:64-bit:*:*:*:*:*
microsoft windows_xp cpe:2.3:o:microsoft:windows_xp:*:sp1:tablet_pc:*:*:*:*:*
microsoft windows_xp cpe:2.3:o:microsoft:windows_xp:*:sp2:tablet_pc:*:*:*:*:*

References for CVE-2005-2119

URL Tags
http://secunia.com/advisories/17161
http://secunia.com/advisories/17172
http://secunia.com/advisories/17223
http://secunia.com/advisories/17509
http://securityreason.com/securityalert/73
http://securitytracker.com/id?1015037
http://support.avaya.com/elmodocs2/security/ASA-2005-214.pdf
http://www.eeye.com/html/research/advisories/AD20051011b.html
http://www.kb.cert.org/vuls/id/180868 US Government Resource
http://www.osvdb.org/18828
http://www.securityfocus.com/bid/15056
http://www.us-cert.gov/cas/techalerts/TA05-284A.html US Government Resource
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-051
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1071
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1452
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A551
cvelogic Threat Intelligence