Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
BID:33134
Info
Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
| Bugtraq ID: | 33134 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2009-0098 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 10 2009 12:00AM |
| Updated: | May 31 2019 10:00PM |
| Credit: | This issue was disclosed by the vendor. |
| Vulnerable: |
Microsoft Exchange Server MAPI Client 1.2.1 Microsoft Exchange Server 2007 SP 1 Microsoft Exchange Server 2007 0 Microsoft Exchange Server 2003 SP2 Microsoft Exchange Server 2003 SP1 Microsoft Exchange Server 2003 Microsoft Exchange Server 2000 SP3 Microsoft Exchange Server 2000 SP2 Microsoft Exchange Server 2000 SP1 Microsoft Exchange Server 2000 Avaya Messaging Application Server MM 3.1 Avaya Messaging Application Server MM 3.0 Avaya Messaging Application Server MM 2.0 Avaya Messaging Application Server MM 1.1 Avaya Messaging Application Server 0 |
| Not Vulnerable: | |
Discussion
Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
Microsoft Exchange Server is prone to a remote code-execution vulnerability.
Remote attackers may exploit this issue by sending maliciously constructed TNEF-encoded email data to vulnerable servers. This issue will be triggered when a user views or previews the malicious email.
Successfully exploiting this issue would allow the attacker to execute arbitrary code on an affected computer in the context of the affected application.
Microsoft Exchange Server is prone to a remote code-execution vulnerability.
Remote attackers may exploit this issue by sending maliciously constructed TNEF-encoded email data to vulnerable servers. This issue will be triggered when a user views or previews the malicious email.
Successfully exploiting this issue would allow the attacker to execute arbitrary code on an affected computer in the context of the affected application.
Exploit / POC
Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
A working commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
Solution:
The vendor has released an advisory along with fixes to address this issue. Please see the references for more information.
Microsoft Exchange Server 2000 SP3
Microsoft Exchange Server 2007 SP 1
Microsoft Exchange Server 2003 SP2
Microsoft Exchange Server MAPI Client 1.2.1
Solution:
The vendor has released an advisory along with fixes to address this issue. Please see the references for more information.
Microsoft Exchange Server 2000 SP3
-
Microsoft Security Update for Exchange 2000 Server (KB959897)
http://www.microsoft.com/downloads/details.aspx?familyid=805dc856-ea60 -477d-be40-6ac535a7e7e5
Microsoft Exchange Server 2007 SP 1
-
Microsoft Update Rollup 6 for Exchange Server 2007 Service Pack 1 (KB959241)
http://www.microsoft.com/downloads/details.aspx?familyid=93cb3f66-ae72 -4356-bdbf-35029cff6df1
Microsoft Exchange Server 2003 SP2
-
Microsoft Security Update for Exchange Server 2003 Service Pack 2 (KB959897)
http://www.microsoft.com/downloads/details.aspx?familyid=1d9f0956-88bd -4e13-a86b-b1c8d4782f71
Microsoft Exchange Server MAPI Client 1.2.1
-
Microsoft Microsoft Exchange Server MAPI Client and Collaboration Data Objects 1.2.1
http://www.microsoft.com/downloads/details.aspx?FamilyID=E17E7F31-079A -43A9-BFF2-0A110307611E&displaylang=en
References
Microsoft Exchange Server TNEF Decoding Remote Code Execution Vulnerability
References:
References:
- Avaya Security Advisory ASA-2009-054 (Avaya)
- Exchange Server Home Page (Microsoft)
- Microsoft Knowledge Base Article 959239 (Microsoft)
- Microsoft Security Bulletin MS09-003 (Microsoft)