2074 : Microsoft Windows Network Share Provider Overflow
Printer | http://osvdb.org/2074 | Email This | Edit Vulnerability

Views This Week

1

Views All Time

33

Info

Last Modified

about 1 year ago

Percent Complete

70%

Disclosure

Aug 22, 2002

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

A vulnerability has been discovered in the Windows Network Share Provider service (Lanman server) that would allow an attacker to remotely crash the operating system of an affected platform. This vulnerability can be triggered through an anonymous null session as well as a valid user account and requires network access to either port 139/tcp or 445/tcp.

Classification

Attack Type: Input Manipulation

Technical

An attacker could exploit this vulnerability by sending a malformed SMB_CON_TRANSACTION packet on Port 139 and 445 to a target computer and cause it to crash. The attacker could use both a user account and anonymous access to accomplish this. Though not confirmed, it may be possible to execute arbitrary code.

Solution

Install Microsoft Windows Patch from Microsoft TechNet http://www.microsoft.com/technet/security/bulletin/ms02-045.asp, or block access to Port 139 and 445 (not applicable for file and printing environment). If possible remove Anonymous access.

Products

Microsoft Corporation
Watch-list
Windows
Watch-list
2000 Advanced Server
2000 Professional
2000 Server
NT 4.0
NT 4.0 Server
NT 4.0 Workstation
XP

References

Tools & Filters

Nessus

11110 11300

Snort

2101 2102 5716 5717 5718 5719 5720 5721 5722 5723 5724 5725 5726

Credit

Unknown or Incomplete

Blogs

None found at this time

Comments

No Comments.

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use