CVE-2006-5270

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/02/2007
Last modified:
09/04/2025

Description

Integer overflow in the Microsoft Malware Protection Engine (mpengine.dll), as used by Windows Live OneCare, Antigen, Defender, and Forefront Security, allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:antigen:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:forefront_security:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:malware_protection_engine:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:windows_defender:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:windows_live_onecare:*:*:*:*:*:*:*:*