Release DateSep 09, 2009 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attempt to exploit a memory corruption vulnerability in Microsoft Server Message Block (SMB).The vulnerability is caused by an error that occurs when Microsoft Server Message Block (SMB) Protocol 2.0 software handles a malformed NEGOTIATE PROTOCOL request. A remote attacker could exploit this vulnerability to execute arbitrary code. |
Affected ProductsWindows Vista and Server 2008 |
Recommended ActionsRefer to the vendor's web site for suggested workaround.http://www.microsoft.com/technet/security/advisory/975497.mspx http://www.microsoft.com/technet/security/Bulletin/ms09-050.mspx |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2009-3103CVE-2009-2532 |
Reference/shttp://www.milw0rm.com/exploits/9594http://www.securityfocus.com/bid/ (BugTraq) http://www.microsoft.com/technet/security/advisory/975497.mspx http://www.microsoft.com/technet/security/Bulletin/ms09-050.mspx (MS-ID) |