OSVDB ID: 70881

Title: Microsoft Windows SMB Browser Election Request Server Name String Overflow

Info

Disclosure

Feb 14, 2011

Discovery

Unknown

Dates

Exploit

Feb 14, 2011

Solution

Unknown

Description

Windows is prone to an overflow condition. The SMB service fails to properly sanitize user-supplied input resulting in a heap overflow. With a specially crafted request, a remote attacker can potentially perform a denial of service, or if the target system is a Master Browser, execute arbitrary code.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity, Loss of Availability
Solution: Solution Unknown
Exploit: Exploit Public
Disclosure: Uncoordinated Disclosure

Solution

OSVDB is not aware of a solution for this vulnerability.

Products

Microsoft Corporation

Windows Server 2003

SP2

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/70881