Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
BID:31609
Info
Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
| Bugtraq ID: | 31609 |
| Class: | Unknown |
| CVE: |
CVE-2008-4023 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 14 2008 12:00AM |
| Updated: | Oct 20 2008 11:06PM |
| Credit: | Paul Miseiko |
| Vulnerable: |
Nortel Networks Self-Service WVADS 0 Nortel Networks Self-Service VoiceXML 0 Nortel Networks Self-Service CCXML 0 Microsoft Windows 2000 Server SP4 Microsoft Windows 2000 Professional SP4 Microsoft Windows 2000 Datacenter Server SP4 Microsoft Windows 2000 Advanced Server SP4 |
| Not Vulnerable: | |
Discussion
Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
Microsoft Windows Active Directory is prone to a remote code-execution vulnerability that arises because the application fails to handle specially crafted LDAP or LDAP over SSL (LDAPS) requests in a proper manner.
Successfully exploiting this issue would allow an attacker to execute arbitrary code and gain complete access to a vulnerable computer. The attacker may also be able to cause the affected system to stop responding to further requests and restart.
This issue affects only Windows 2000 servers configured as Active Directory domain controllers.
Microsoft Windows Active Directory is prone to a remote code-execution vulnerability that arises because the application fails to handle specially crafted LDAP or LDAP over SSL (LDAPS) requests in a proper manner.
Successfully exploiting this issue would allow an attacker to execute arbitrary code and gain complete access to a vulnerable computer. The attacker may also be able to cause the affected system to stop responding to further requests and restart.
This issue affects only Windows 2000 servers configured as Active Directory domain controllers.
Exploit / POC
Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Core Security Technologies has developed an exploit causing denial-of-service conditions for its CORE IMPACT product. This code is not otherwise publicly available or known to be circulating in the wild.
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Core Security Technologies has developed an exploit causing denial-of-service conditions for its CORE IMPACT product. This code is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
Solution:
The vendor released an advisory along with fixes to address this issue. Please see the references for more information.
Microsoft Windows 2000 Advanced Server SP4
Microsoft Windows 2000 Professional SP4
Microsoft Windows 2000 Datacenter Server SP4
Microsoft Windows 2000 Server SP4
Solution:
The vendor released an advisory along with fixes to address this issue. Please see the references for more information.
Microsoft Windows 2000 Advanced Server SP4
-
Microsoft Security Update for Windows 2000 (KB957280)
http://www.microsoft.com/downloads/details.aspx?familyid=8ed7bb9a-4b26 -49d7-8c14-60226d2bc20d&displaylang=en
Microsoft Windows 2000 Professional SP4
-
Microsoft Security Update for Windows 2000 (KB957280)
http://www.microsoft.com/downloads/details.aspx?familyid=8ed7bb9a-4b26 -49d7-8c14-60226d2bc20d&displaylang=en
Microsoft Windows 2000 Datacenter Server SP4
-
Microsoft Security Update for Windows 2000 (KB957280)
http://www.microsoft.com/downloads/details.aspx?familyid=8ed7bb9a-4b26 -49d7-8c14-60226d2bc20d&displaylang=en
Microsoft Windows 2000 Server SP4
-
Microsoft Security Update for Windows 2000 (KB957280)
http://www.microsoft.com/downloads/details.aspx?familyid=8ed7bb9a-4b26 -49d7-8c14-60226d2bc20d&displaylang=en
References
Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability
References:
References:
- Microsoft Windows Homepage (Microsoft )
- Microsoft Security Bulletin MS08-060 (Microsoft)
- Nortel Response to Microsoft Security Bulletin MS08-060 (Nortel Networks)