Integer overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.Referenceshttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A216https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A322http://www.kb.cert.org/vuls/id/266926http://archives.neohapsis.com/archives/fulldisclosure/2004-02/0806.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A306https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-025https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A515http://www.us-cert.gov/cas/techalerts/TA04-212A.htmlhttps://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A507https://exchange.xforce.ibmcloud.com/vulnerabilities/15210