Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
BID:10930
Info
Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
| Bugtraq ID: | 10930 |
| Class: | Race Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 12 2004 12:00AM |
| Updated: | Aug 12 2004 12:00AM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Microsoft Windows XP Tablet PC Edition Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Media Center Edition SP1 Microsoft Windows XP Media Center Edition Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows XP Embedded SP1 Microsoft Windows XP Embedded Microsoft Windows XP 64-bit Edition Version 2003 SP1 Microsoft Windows XP 64-bit Edition Version 2003 Microsoft Windows XP 64-bit Edition SP1 Microsoft Windows XP 64-bit Edition |
| Not Vulnerable: |
Microsoft Windows XP Professional SP2 Microsoft Windows XP Media Center Edition SP2 Microsoft Windows XP Home SP2 |
Discussion
Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
It is reported that the Internet Connection Firewall is susceptible to a filter bypass vulnerability.
This issue presents itself during the boot process of Microsoft Windows operating systems.
This vulnerability allows packets to pass, possibly in violation of the firewall rules. By exploiting this vulnerability, a remote attacker may be able to make network connections to services protected by the firewall. This may open up avenues of attack that were thought to have been protected by the firewall, providing a false sense of security.
Windows XP Service Pack 2 is reported to fix this vulnerability.
It is reported that the Internet Connection Firewall is susceptible to a filter bypass vulnerability.
This issue presents itself during the boot process of Microsoft Windows operating systems.
This vulnerability allows packets to pass, possibly in violation of the firewall rules. By exploiting this vulnerability, a remote attacker may be able to make network connections to services protected by the firewall. This may open up avenues of attack that were thought to have been protected by the firewall, providing a false sense of security.
Windows XP Service Pack 2 is reported to fix this vulnerability.
Exploit / POC
Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
Solution:
Microsoft has released service pack 2 that addresses this issue.
Microsoft Windows XP Home
Microsoft Windows XP Home SP1
Microsoft Windows XP Professional
Microsoft Windows XP Professional SP1
Solution:
Microsoft has released service pack 2 that addresses this issue.
Microsoft Windows XP Home
-
Microsoft Windows XP Service Pack 2 Network Installation Package for IT Professionals and Developers
http://www.microsoft.com/downloads/details.aspx?FamilyId=049C9DBE-3B8E -4F30-8245-9E368D3CDB5A&displaylang=en
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Service Pack 2 Network Installation Package for IT Professionals and Developers
http://www.microsoft.com/downloads/details.aspx?FamilyId=049C9DBE-3B8E -4F30-8245-9E368D3CDB5A&displaylang=en
Microsoft Windows XP Professional
-
Microsoft Windows XP Service Pack 2 Network Installation Package for IT Professionals and Developers
http://www.microsoft.com/downloads/details.aspx?FamilyId=049C9DBE-3B8E -4F30-8245-9E368D3CDB5A&displaylang=en
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Service Pack 2 Network Installation Package for IT Professionals and Developers
http://www.microsoft.com/downloads/details.aspx?FamilyId=049C9DBE-3B8E -4F30-8245-9E368D3CDB5A&displaylang=en
References
Microsoft Windows Internet Connection Firewall Filter Bypass Vulnerability
References:
References:
- Changes to Functionality in Microsoft Windows XP Service Pack 2 (Microsoft)
- Windows XP Service Pack 2 Homepage (Microsoft)