This application requires Javascript for optimal performance.

MS.RRAS.RasRpcSubmitRequest.Buffer.Overflow

Release Date

Mar 14, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against a buffer-overflow vulnerability in the Windows RRAS service.

The vulnerability is caused by a boundary checking error when handling certain DCERPC requests. This can be exploited by attackers to execute arbitrary code via certain crafted DCERPC requests.

Affected Products

Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003

Recommended Actions

Apply the patch, available from the vendor's website:
http://www.microsoft.com/technet/security/Bulletin/MS06-025.mspx

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-2370

Reference/s

http://www.securityfocus.com/bid/18325 (BugTraq)
http://technet.microsoft.com/en-us/security/bulletin/MS06-025.mspx (MS-ID)

Reference: VID-25170