The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-059: Unchecked Buffer in Universal Plug and Play can Lead to System Compromise
Time: 18:00 EST/23:00 GMT | News Source: ActiveWin.com | Posted By: Matthew Sabean

The Universal Plug and Play (UPnP) service allows computers to discover and use network-based devices. Windows ME and XP include native UPnP services; Windows 98 and 98SE do not include a native UPnP service, but one can be installed via the Internet Connection Sharing client that ships with Windows XP. This bulletin discusses two vulnerabilities affecting these UPnP implementations. Although the vulnerabilities are unrelated, both involve how UPnP-capable computers handle the discovery of new devices on the network.

The first vulnerability is a buffer overrun vulnerability. There is an unchecked buffer in one of the components that handle NOTIFY directives – messages that advertise the availability of UPnP-capable devices on the network. By sending a specially malformed NOTIFY directive, it would be possible for an attacker to cause code to run in the context of the UPnP service, which runs with System privileges on Windows XP. (On Windows 98 and Windows ME, all code executes as part of the operating system). This would enable the attacker to gain complete control over the system.

The second vulnerability results because the UPnP doesn’t sufficiently limit the steps to which the UPnP service will go to obtain information on using a newly discovered device. Within the NOTIFY directive that a new UPnP device sends is information telling interested computers where to obtain its device description, which lists the services the device offers and instructions for using them. By design, the device description may reside on a third-party server rather than on the device itself. However, the UPnP implementations don’t adequately regulate how it performs this operation, and this gives rise to two different denial of service scenarios.

Patch availability:

Write Comment
Return to News

  Displaying 201 through 205 of 205
Prev | First
  The time now is 4:21:27 PM ET.
Any comment problems? E-mail us
#201 By 4240821 (212.193.138.162) at 8/25/2024 7:03:34 AM
https://nsfw.su/get/a30/a30fnvzsmvrlehwaam.php
https://sexonly.su/get/a128/a128qkunfmgmdrtbttc.php
https://sexonly.top/gett/c984/c984wtsmurbdmiurvsv.php
https://nsfw.su/get/a18/a18eamleasmppnxpdb.php
https://sexonly.top/gett/c303/c303usnqkhsjeukdzjt.php
https://sexonly.top/gett/c426/c426wzudsamvnrebezp.php
https://sexonly.top/gett/c873/c873hgvqmwoditlhvse.php
https://nsfw.su/get/a220/a220tuicmfyqgnafmxt.php
https://nsfw.su/get/a87/a87ozhcmlqkmaoeucx.php
https://sexonly.top/gett/c356/c356phulfcumewpxzdw.php

#202 By 4240821 (77.83.4.69) at 8/26/2024 9:06:36 AM
https://sexonly.top/gett/c120/c120rkimjfkifwjfzio.php
https://nsfw.su/get/a76/a76yczaakpazocczsy.php
https://sexonly.top/gett/c869/c869ewkjjlpidsmgsrr.php
https://sexonly.top/gett/c354/c354hfbvyxlhwmrimpp.php
https://sexonly.top/gett/c332/c332hdtejtktmpjgorv.php
https://sluts.su/get/a19/a19mkalafobirvgpha.php
https://sluts.su/get/a223/a223szwoqwbuwuohsqh.php
https://sluts.su/get/a14/a14mavposchjvcnejx.php
https://sexonly.su/get/a79/a79nsastphxuywpgeu.php
https://sluts.su/get/a199/a199fnonoiaqnbgwhot.php

#203 By 4240821 (195.208.3.68) at 8/26/2024 8:02:39 PM
https://nsfw.su/get/a246/a246pdazxwkvxgkpqyt.php
https://sexonly.su/get/a265/a265kaevswvjuringme.php
https://sexonly.su/get/a68/a68ubqucxeakezczai.php
https://sexonly.top/gett/c501/c501cqnefkueqslmrab.php
https://nsfw.su/get/a227/a227rquvtkjjmbmoqeu.php
https://sexonly.top/gett/c900/c900qzuzpyvlqvxibme.php
https://sexonly.top/gett/c525/c525bdsplgvmljelkwn.php
https://sexonly.su/get/a238/a238boykugocofcvonc.php
https://sexonly.su/get/a258/a258qoruzqivesgwqaw.php
https://nsfw.su/get/a112/a112zfqipmmcxlsecoa.php

#204 By 4240821 (62.76.153.72) at 8/27/2024 2:50:07 AM
https://sexonly.top/gett/c504/c504bzwosdyfgbmkmge.php
https://sexonly.su/get/a168/a168uyojnsometyogww.php
https://sluts.su/get/a108/a108cmhlllvsfjqxrrw.php
https://sexonly.top/gett/c921/c921sygtwqxxfnmdwjp.php
https://nsfw.su/get/a32/a32ywfitbrdahqdrpy.php
https://sexonly.top/gett/c327/c327uhxfpwojhyoqozl.php
https://nsfw.su/get/a255/a255sndilptjvoygodd.php
https://nsfw.su/get/a195/a195bpvsothncufpsbg.php
https://sexonly.top/gett/c133/c133hudzvncwuxkniwb.php
https://nsfw.su/get/a271/a271nnzmpairwegpgan.php

#205 By 4240821 (80.73.244.53) at 8/27/2024 10:19:00 AM
https://bio.site/igperkidsconc162
https://bio.site/feedcheesubtto85
https://bio.site/waismarraiquad654
https://bio.site/daigaffveman120
https://bio.site/neumidesli697
https://bio.site/phebuvelmant510
https://bio.site/ogcusopor585
https://bio.site/titgaligo427
https://bio.site/heckterkyorem153
https://bio.site/bergzofelde833

Write Comment
Return to News
  Displaying 201 through 205 of 205
Prev | First
  The time now is 4:21:27 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *