The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS01-059: Unchecked Buffer in Universal Plug and Play can Lead to System Compromise
Time: 18:00 EST/23:00 GMT | News Source: ActiveWin.com | Posted By: Matthew Sabean

The Universal Plug and Play (UPnP) service allows computers to discover and use network-based devices. Windows ME and XP include native UPnP services; Windows 98 and 98SE do not include a native UPnP service, but one can be installed via the Internet Connection Sharing client that ships with Windows XP. This bulletin discusses two vulnerabilities affecting these UPnP implementations. Although the vulnerabilities are unrelated, both involve how UPnP-capable computers handle the discovery of new devices on the network.

The first vulnerability is a buffer overrun vulnerability. There is an unchecked buffer in one of the components that handle NOTIFY directives – messages that advertise the availability of UPnP-capable devices on the network. By sending a specially malformed NOTIFY directive, it would be possible for an attacker to cause code to run in the context of the UPnP service, which runs with System privileges on Windows XP. (On Windows 98 and Windows ME, all code executes as part of the operating system). This would enable the attacker to gain complete control over the system.

The second vulnerability results because the UPnP doesn’t sufficiently limit the steps to which the UPnP service will go to obtain information on using a newly discovered device. Within the NOTIFY directive that a new UPnP device sends is information telling interested computers where to obtain its device description, which lists the services the device offers and instructions for using them. By design, the device description may reside on a third-party server rather than on the device itself. However, the UPnP implementations don’t adequately regulate how it performs this operation, and this gives rise to two different denial of service scenarios.

Patch availability:

Write Comment
Return to News

  Displaying 751 through 760 of 760
Prev | First
  The time now is 10:17:44 AM ET.
Any comment problems? E-mail us
#751 By 4240821 (82.115.4.100) at 12/26/2025 8:09:50 PM
https://pinduck.com/pin/691242/aliceinkinkyland-kelz05-indie-nyx/
https://pinduck.com/pin/691241/rosakim-cutegelma-babygirl272/
https://pinduck.com/pin/691240/feyaneutral-ssfknstuff-cecilia-morrell/
https://pinduck.com/pin/691239/kinkycouple2017-vegascumqueenlexi-sassysugartits/
https://pinduck.com/pin/691237/jazzy-lixx-honeyybunnii-yourdirtylilsecret/
https://pinduck.com/pin/691234/anai-bailey-dotcat20-kloecastle/
https://pinduck.com/pin/691209/laylaluxxx1-goddess-tinka-sextkitten69/
https://pinduck.com/pin/691208/bahbie2019-harleenqueen16-tuuubabeepi/
https://pinduck.com/pin/691207/milf32atl-liarose7-allison999/
https://pinduck.com/pin/691206/clarisse-1-lizzydakota-jewel-bancroft/

#752 By 4240821 (82.115.4.100) at 12/30/2025 4:49:46 PM
https://telegra.ph/Ninja-Warrior-Germany-2025-Europes-Toughest-Course-Gets-a-German-Takeover-12-13-3
https://telegra.ph/Peter-Greene-The-Man-The-Myth-The-Mystery-Unraveled-12-13-3
https://telegra.ph/Matt-Grangers-Secret-Talent-Revealed-Hes-a-Master-of-Martian-Chess-12-13
https://telegra.ph/JonBenét-Ramsey-The-Unsolved-Mystery-That-Still-Haunts-a-Nation-12-13
https://telegra.ph/Luciatåg-A-Festive-Spectacle-of-Light-and-Song-Sweeps-Through-the-Night-12-13
https://telegra.ph/Tim-Allens-Home-Improvement-Home-Now-a-Smart-Home-Buzz-Lightyear-Approved-12-13
https://telegra.ph/Stepan-Gigas-fiery-performance-ignites-the-stage-leaving-fans-breathless-12-13-2
https://telegra.ph/Friday-Feeling-Unleash-Your-Inner-Wild-12-13
https://telegra.ph/Nantes-Angers-Furious-Fans-Clash-Over-Derby-Day-Drama-12-13
https://telegra.ph/Ohl-what-a-scandal-12-13-3

#753 By 4240821 (82.115.4.100) at 12/31/2025 9:48:15 PM
https://telegra.ph/Casertanas-Comeback-From-Underdog-to-Unstoppable-12-14
https://telegra.ph/Genoas-Last-Stand-Can-They-Douse-Inters-Scudetto-Fire-12-14-2
https://telegra.ph/Benfica-FC-Ignites-Transfer-Market-with-Shocking-Bid-12-14
https://telegra.ph/FuboTV-Scores-Big-Your-All-Access-Pass-to-Every-Game-Every-Channel-Every-Score-12-14
https://telegra.ph/Jets-vs-Jaguars-Gridiron-Grudge-Match-Ignites-12-14
https://telegra.ph/South-Africa-vs-India-Crickets-Fiery-Showdown-Ignites-the-Summer-12-14-4
https://telegra.ph/Zuckerbergs-Metaverse-Meltdown-Billions-Vanish-as-Users-Flee-Virtual-Reality-12-14
https://telegra.ph/Boeing-777-A-Technological-Marvel-Takes-Flight-Redefining-Air-Travel-12-14-2
https://telegra.ph/Moreirense-Stuns-Benfica-in-Fiery-Encounter-12-14
https://telegra.ph/Pierre-Hermés-Ispahan-Macaron-A-Symphony-of-Rose-Lychee-and-Raspberry-That-Will-Transport-Your-Taste-Buds-to-Paris-12-14

#754 By 4240821 (82.115.4.100) at 1/1/2026 2:27:57 PM
https://www.pillowfort.social/posts/6793918
https://www.pillowfort.social/posts/6793519
https://www.pillowfort.social/posts/6793341
https://www.pillowfort.social/posts/6793264
https://www.pillowfort.social/posts/6793181
https://www.pillowfort.social/posts/6793049
https://www.pillowfort.social/posts/6792897
https://www.pillowfort.social/posts/6792708
https://www.pillowfort.social/posts/6792507
https://www.pillowfort.social/posts/6792354

#755 By 4240821 (82.115.4.100) at 1/1/2026 7:54:43 PM
https://www.pillowfort.social/posts/6748160
https://www.pillowfort.social/posts/6747867
https://www.pillowfort.social/posts/6747665
https://www.pillowfort.social/posts/6747463
https://www.pillowfort.social/posts/6747343
https://www.pillowfort.social/posts/6747208
https://www.pillowfort.social/posts/6747055
https://www.pillowfort.social/posts/6746867
https://www.pillowfort.social/posts/6746706
https://www.pillowfort.social/posts/6746522

#756 By 4240821 (82.115.4.100) at 1/2/2026 12:36:00 AM
https://www.pillowfort.social/posts/6671408
https://www.pillowfort.social/posts/6671259
https://www.pillowfort.social/posts/6671005
https://www.pillowfort.social/posts/6670720
https://www.pillowfort.social/posts/6670394
https://www.pillowfort.social/posts/6670152
https://www.pillowfort.social/posts/6669859
https://www.pillowfort.social/posts/6669589
https://www.pillowfort.social/posts/6669425
https://www.pillowfort.social/posts/6669218

#757 By 4240821 (82.115.4.100) at 1/3/2026 5:41:11 AM
https://www.pillowfort.social/posts/6597474
https://www.pillowfort.social/posts/6597328
https://www.pillowfort.social/posts/6597093
https://www.pillowfort.social/posts/6596918
https://www.pillowfort.social/posts/6596795
https://www.pillowfort.social/posts/6596541
https://www.pillowfort.social/posts/6596420
https://www.pillowfort.social/posts/6595911
https://www.pillowfort.social/posts/6595858
https://www.pillowfort.social/posts/6595808

#758 By 4240821 (82.115.4.100) at 1/3/2026 11:50:52 PM
https://www.pillowfort.social/posts/6441631
https://www.pillowfort.social/posts/6441402
https://www.pillowfort.social/posts/6441055
https://www.pillowfort.social/posts/6440937
https://www.pillowfort.social/posts/6440796
https://www.pillowfort.social/posts/6440707
https://www.pillowfort.social/posts/6440399
https://www.pillowfort.social/posts/6440359
https://www.pillowfort.social/posts/6440301
https://www.pillowfort.social/posts/6440215

#759 By 4240821 (82.115.4.100) at 1/4/2026 10:26:06 AM
https://www.pillowfort.social/posts/6754395
https://www.pillowfort.social/posts/6754162
https://www.pillowfort.social/posts/6753988
https://www.pillowfort.social/posts/6753815
https://www.pillowfort.social/posts/6753659
https://www.pillowfort.social/posts/6753502
https://www.pillowfort.social/posts/6753333
https://www.pillowfort.social/posts/6752839
https://www.pillowfort.social/posts/6752760
https://www.pillowfort.social/posts/6752641

#760 By 4240821 (82.115.4.100) at 1/6/2026 4:05:54 PM
https://www.pillowfort.social/posts/6618148
https://www.pillowfort.social/posts/6617949
https://www.pillowfort.social/posts/6617780
https://www.pillowfort.social/posts/6617645
https://www.pillowfort.social/posts/6617474
https://www.pillowfort.social/posts/6617114
https://www.pillowfort.social/posts/6616864
https://www.pillowfort.social/posts/6616769
https://www.pillowfort.social/posts/6616355
https://www.pillowfort.social/posts/6616136

Write Comment
Return to News
  Displaying 751 through 760 of 760
Prev | First
  The time now is 10:17:44 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *