Computer Security
[EN] securityvulns.ru
no-pyccku



Windows multiple bugs
updated since 14.04.2004
Published:01.04.2005
Source:MICROSOFT
SecurityVulns ID:3602
Type:remote
Level:10/10
Description:LSASSS buffer overflow, LDAP DoS, PCT buffer overflow, WinLogon buffer overflow, WMF/EMF parsing buffer overflow, HCP:// code execution, Utility Manager privilege escalation, WMI privilege escalation, LDT privilege escalation, H.323 buffer overflow, NTVDM privilege escalation, ASM.1 double free memory coruuption.
Affected:MICROSOFT : Windows NT 4.0 Workstation
 MICROSOFT : Windows NT 4.0 Server
 MICROSOFT : Windows 2000 Server
 MICROSOFT : Windows 2000 Professional
 MICROSOFT : NetMeeting 3.01
 MICROSOFT : Windows XP
 MICROSOFT : Windows 2003 Server
Original documentdocumentliquid_(at)_cyberspace.org, WindowsXP malformed .wmf files DoS (01.04.2005)
 documentMICROSOFT, Microsoft Security Bulletin MS04-019 Vulnerability in Utility Manager Could Allow Code Execution (842526) (14.07.2004)
 documentVivek Rathod (Application Security, Inc.), Microsoft Window Utility Manager Local Elevation of Privileges (14.07.2004)
 documentVivek Rathod (Application Security, Inc.), [VulnWatch] [SHATTER Team Security Alert] Microsoft Windows Utility Manager Vulnerability (15.04.2004)
 documentBrett Moore, [Full-Disclosure] Utility Manager - Failure to drop system privileges (15.04.2004)
 documentX-FORCE, ISS Security Brief: Microsoft SSL Library Remote Compromise Vulnerability (14.04.2004)
 documentEEYE, [Full-Disclosure] EEYE: Windows VDM TIB Local Privilege Escalation (14.04.2004)
 documentEEYE, [Full-Disclosure] EEYE: Windows Local Security Authority Service Remote Buffer Overflow (14.04.2004)
 documentEEYE, [Full-Disclosure] EEYE: Windows Expand-Down Data Segment Local Privilege Escalation (14.04.2004)
 documentJouko Pynnonen, [Full-Disclosure] Microsoft Help and Support Center argument injection vulnerability (14.04.2004)
 documentCERT, US-CERT Technical Cyber Security Alert TA04-104A -- Multiple Vulnerabilities in Microsoft Products (14.04.2004)
 documentNsfocus Security Team, [Full-Disclosure] NSFOCUS SA2004-01 : DoS Vulnerability in Microsoft Windows SPNEGO Protocol Decoding (14.04.2004)
 documentMICROSOFT, Microsoft Security Bulletin MS04-011 (14.04.2004)
Files:SSL Remote DoS PoC
 Microsoft Windows Utility Manager PoC exploit
 Metasploit Microsoft IIS SSL PCT Module
  Microsoft Windows Utility Mnanager Exploit II
 MS04011 Lsasrv.dll RPC buffer overflow remote exploit (PoC)
 Windows Expand-Down Data Segment Local Privilege Escalation [MS04-011]
 IIS 5 SSL remote root exploit
 Windows Lsasrv.dll RPC [ms04011] buffer overflow Remote Exploit
 LSASS Arooter by Sub
 Local elevation of priviliges exploit for win2k Utility Manager to work on any win2k
 Utility Manager exploit v2.666 modified by kralor
 Рабочий эксплойт для Диспетчера Служебных Программ (utility manager) by 0x90 with a great help of Paul
 Proof of concept for the WMF parsing bug
 Microsoft Security Bulletin MS04-019 Vulnerability in Utility Manager Could Allow Code Execution (842526)
 Microsoft Security Bulletin MS04-011 Security Update for Microsoft Windows (835732)
 Internet Security Systems Security Advisory Microsoft SSL Library Remote Compromise Vulnerability
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server