Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
BID:32357
Info
Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
| Bugtraq ID: | 32357 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2008-5229 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 19 2008 12:00AM |
| Updated: | May 07 2015 05:21PM |
| Credit: | Marius Wachtler, Michael Burgbacher, Carson Hounshell, Michael Craggs and Thomas Unterleitner on behalf of phion AG. |
| Vulnerable: |
phion AG netfence entegra 1.2 Microsoft Windows Vista x64 Edition SP1 Microsoft Windows Vista x64 Edition 0 Microsoft Windows Vista Ultimate 64-bit edition SP1 Microsoft Windows Vista Ultimate 64-bit edition 0 Microsoft Windows Vista Home Premium 64-bit edition SP1 Microsoft Windows Vista Home Premium 64-bit edition 0 Microsoft Windows Vista Home Basic 64-bit edition SP1 Microsoft Windows Vista Home Basic 64-bit edition 0 Microsoft Windows Vista Enterprise 64-bit edition SP1 Microsoft Windows Vista Enterprise 64-bit edition 0 Microsoft Windows Vista Business 64-bit edition SP1 Microsoft Windows Vista Business 64-bit edition 0 Microsoft Windows Vista Ultimate SP1 Microsoft Windows Vista Ultimate Microsoft Windows Vista SP1 Microsoft Windows Vista Home Premium SP1 Microsoft Windows Vista Home Premium Microsoft Windows Vista Home Basic SP1 Microsoft Windows Vista Home Basic Microsoft Windows Vista Enterprise SP1 Microsoft Windows Vista Enterprise Microsoft Windows Vista Business SP1 Microsoft Windows Vista Business Microsoft Windows Vista 0 |
| Not Vulnerable: | |
Discussion
Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
Microsoft Windows Vista is prone to a buffer-overflow vulnerability because of insufficient boundary checks.
Local attackers could exploit this issue to cause denial-of-service conditions. Given the nature of this issue, attackers may also be able to execute arbitrary code with SYSTEM-level privileges, but this has not been confirmed.
Windows Vista SP1 is vulnerable to this issue.
UPDATE (November 25, 2008): Since this issue may be exploitable only by members of the administrative group, the security implication of this issue may be negated.
Microsoft Windows Vista is prone to a buffer-overflow vulnerability because of insufficient boundary checks.
Local attackers could exploit this issue to cause denial-of-service conditions. Given the nature of this issue, attackers may also be able to execute arbitrary code with SYSTEM-level privileges, but this has not been confirmed.
Windows Vista SP1 is vulnerable to this issue.
UPDATE (November 25, 2008): Since this issue may be exploitable only by members of the administrative group, the security implication of this issue may be negated.
Exploit / POC
Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
The following proof-of-concept console command is available:
route add 1.2.3.4/240 4.3.2.1
The following example exploit is available:
The following proof-of-concept console command is available:
route add 1.2.3.4/240 4.3.2.1
The following example exploit is available:
Solution / Fix
Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
Solution:
phion AG has released a patch for netfence entegra; please see the references for more information.
Currently we are not aware of any patches from Microsoft. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
phion AG has released a patch for netfence entegra; please see the references for more information.
Currently we are not aware of any patches from Microsoft. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability
References:
References:
- CreateIpForwardEntry2 Function (Microsoft)
- Windows Vista Homepage (Microsoft)
- Microsoft VISTA TCP/IP stack buffer overflow (Thomas Unterleitner
) - Re: Microsoft VISTA TCP/IP stack buffer overflow ([email protected])