Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
BID:19388
CVE-2006-3444 |Info
Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
| Bugtraq ID: | 19388 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-3444 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 08 2006 12:00AM |
| Updated: | Sep 27 2006 11:31PM |
| Credit: | This issue was announced by the vendor. |
| Vulnerable: |
Microsoft Windows 2000 Server SP4 Microsoft Windows 2000 Server SP3 Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Professional SP4 Microsoft Windows 2000 Professional SP3 Microsoft Windows 2000 Professional SP2 Microsoft Windows 2000 Professional SP1 Microsoft Windows 2000 Professional Microsoft Windows 2000 Datacenter Server SP4 Microsoft Windows 2000 Datacenter Server SP3 Microsoft Windows 2000 Datacenter Server SP2 Microsoft Windows 2000 Datacenter Server SP1 Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Advanced Server SP4 Microsoft Windows 2000 Advanced Server SP3 Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server |
| Not Vulnerable: | |
Discussion
Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
A local privilege-escalation vulnerability affects Microsoft Windows 2000.
This vulnerability affects the Windows kernel; local attackers may exploit it to completely compromise an affected computer.
A local privilege-escalation vulnerability affects Microsoft Windows 2000.
This vulnerability affects the Windows kernel; local attackers may exploit it to completely compromise an affected computer.
Exploit / POC
Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
Solution:
Microsoft has released a security bulletin to address this issue.
Microsoft reported that the MS06-049 patch (920958) may corrupt NTFS compression files that are larger than 4 kilobytes. Microsoft recommends disabling NTFS compression as a workaround.
Please refer to the attached security bulletin for more information.
Solution:
Microsoft has released a security bulletin to address this issue.
Microsoft reported that the MS06-049 patch (920958) may corrupt NTFS compression files that are larger than 4 kilobytes. Microsoft recommends disabling NTFS compression as a workaround.
Please refer to the attached security bulletin for more information.
References
Microsoft Windows 2000 Kernel Local Privilege Escalation Vulnerability
References:
References:
- Known Issue Documented for MS06-049 (Microsoft)
- Microsoft Security Bulletin MS06-049 (Microsoft)
- Microsoft Security Bulletin MS06-049 Revision and Re-release (Microsoft)
- Since weekend update, small files up to 4096 bytes get corrupted in Windows 2000 (Technet Discussion Group)