Computer Security
[EN] securityvulns.ru no-pyccku


Multiple Microsoft Internet Explorer security vulnerabilities
updated since 13.06.2006
Published:14.06.2006
Source:
SecurityVulns ID:6251
Type:remote
Threat Level:
8/10
Description:Multiple memory corruptions, address bar spoofing, cross-frame data access. May be used for hidden malware installation.
Affected:MICROSOFT : Internet Explorer 5.01
 MICROSOFT : Internet Explorer 6.0
Original documentdocumentSECUNIA, Secunia Resaerch: Internet Explorer Exception Handling Memory Corruption Vulnerability (14.06.2006)
 documentZDI, ZDI-06-018: Microsoft Internet Explorer DXImageTransform ActiveX Memory Corruption Vulnerability (14.06.2006)
 documentZDI, ZDI-06-017: Microsoft Internet Explorer UTF-8 Decoding Heap Overflow Vulnerability (14.06.2006)
 documentMICROSOFT, Microsoft Security Bulletin MS06-021 (13.06.2006)
Files:Microsoft Security Bulletin MS06-021 Cumulative Security Update for Internet Explorer (916281)

Microsoft Windows 2000 AOL Image Support Update ART images buffer overflow
updated since 13.06.2006
Published:14.06.2006
Source:
SecurityVulns ID:6252
Type:client
Threat Level:
5/10
Description:Buffer overflow on ART images processing.
Affected:MICROSOFT : Windows 2000 AOL Image Support Update
Original documentdocumentIDEFENSE, iDefense Security Advisory 06.13.06: Microsoft Internet Explorer ART File Heap Corruption Vulnerability (14.06.2006)
 documentMICROSOFT, Microsoft Security Bulletin MS06-022 Vulnerability in ART Image Rendering Could Allow Remote Code Execution (918439) (13.06.2006)
Files:Microsoft Security Bulletin MS06-022 Vulnerability in ART Image Rendering Could Allow Remote Code Execution (918439)

Windows Media Player PNG files buffer overflow
updated since 13.06.2006
Published:14.06.2006
Source:
SecurityVulns ID:6254
Type:client
Threat Level:
7/10
Description:Buffer overflow on PNG files processing.
Affected:MICROSOFT : Windows XP
 MICROSOFT : Windows Media Player 9
 MICROSOFT : Windows Media Player 10
Original documentdocumentIDEFENSE, [Full-disclosure] iDefense Security Advisory 06.13.06: Windows Media Player PNG Chunk Decoding Stack-Based Buffer Overflow (14.06.2006)
 documentMICROSOFT, Microsoft Security Bulletin MS06-024 (13.06.2006)
Files: Microsoft Security Bulletin MS06-024 Vulnerability in Windows Media Player Could Allow Remote Code Execution (917734)

Microsoft Windows 2000 RPC spoofed server attack
Published:14.06.2006
Source:
SecurityVulns ID:6259
Type:m-i-t-m
Threat Level:
5/10
Description:Mutual authentication is not actually performed.
Affected:MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Professional
Original documentdocumentMICROSOFT, Microsoft Security Bulletin MS06-031 Vulnerability in RPC Mutual Authentication Could Allow Spoofing (917736) (14.06.2006)

Windows ICMP DoS (potential code execution)
updated since 09.02.2006
Published:14.06.2006
Source:
SecurityVulns ID:5753
Type:remote
Threat Level:
9/10
Description:Buffer overflow on ICMP packets with Loose Source and Record Route IP options. Short message translation: There are DoS conditions in Windows 2000 built-in NAT server. Tested configuration: Windows 2000 English Standard/Advanced Service Pack 4 + Update Rollup 1 for Service Pack 4 with NAT server enabled. While routing packets with options "Loose Source and Record Route" defined by RFC 791 through server, Windows crashes to BSOD with error in tcpip.sys or ntoskrnl.exe, or system hangs or system began instable work. It doesn't metter if packets are from internal or external networks. Use attached script to test vulnerability. On Windows 2003 problem doesn't present. It's also likely same problem to present in Windows 2000 + ISA 2000. Code execution is potentially possible.
Affected:MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Professional
 MICROSOFT : Windows XP
 MICROSOFT : Windows 2003 Server
Original documentdocumentМинаев Андрей, Server crash on ICMP packets with Loose Source and Record Route IP options. (14.06.2006)
 documentMICROSOFT, Microsoft Security Bulletin MS06-032 Vulnerability in TCP/IP Could Allow Remote Code Execution (917953) (14.06.2006)
 documentМинаев Андрей, DOS во встроенном NAT сервере Windows 2000 (09.02.2006)
Files:Windows 2000 NAT ICMP options DoS PoC
 Windows 2000 NAT ICMP options DoS PoC
 Microsoft Security Bulletin MS06-032 Vulnerability in TCP/IP Could Allow Remote Code Execution (917953)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod