Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
BID:36265
Info
Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
| Bugtraq ID: | 36265 |
| Class: | Unknown |
| CVE: |
CVE-2009-1925 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 08 2009 12:00AM |
| Updated: | Oct 15 2009 07:29PM |
| Credit: | Microsoft |
| Vulnerable: |
Nortel Networks Self-Service WVADS 0 Nortel Networks Self-Service VoiceXML 0 Nortel Networks Self-Service Speech Server 0 Nortel Networks Self-Service Peri Workstation 0 Nortel Networks Self-Service Peri Application 0 Nortel Networks Self-Service MPS 500 0 Nortel Networks Self-Service MPS 1000 0 Nortel Networks Self-Service MPS 100 0 Nortel Networks Self-Service CCXML 0 Nortel Networks Self-Service - CCSS7 0 Nortel Networks Contact Center NCC 0 Nortel Networks Contact Center Manager Server 0 Nortel Networks Contact Center Express Nortel Networks Contact Center Administration 0 Nortel Networks Contact Center - TAPI Server 0 Nortel Networks Contact Center - Symposium Agent 0 Nortel Networks CallPilot 703t Nortel Networks CallPilot 600r Nortel Networks CallPilot 202i Nortel Networks CallPilot 201i Nortel Networks CallPilot 1002rp Microsoft Windows Vista x64 Edition SP2 Microsoft Windows Vista x64 Edition SP1 Microsoft Windows Vista x64 Edition 0 Microsoft Windows Vista Ultimate 64-bit edition SP2 Microsoft Windows Vista Ultimate 64-bit edition SP1 Microsoft Windows Vista Ultimate 64-bit edition 0 Microsoft Windows Vista Home Premium 64-bit edition SP2 Microsoft Windows Vista Home Premium 64-bit edition SP1 Microsoft Windows Vista Home Premium 64-bit edition 0 Microsoft Windows Vista Home Basic 64-bit edition SP2 Microsoft Windows Vista Home Basic 64-bit edition SP1 Microsoft Windows Vista Home Basic 64-bit edition 0 Microsoft Windows Vista Enterprise 64-bit edition SP2 Microsoft Windows Vista Enterprise 64-bit edition SP1 Microsoft Windows Vista Enterprise 64-bit edition 0 Microsoft Windows Vista Business 64-bit edition SP2 Microsoft Windows Vista Business 64-bit edition SP1 Microsoft Windows Vista Business 64-bit edition 0 Microsoft Windows Vista Ultimate SP2 Microsoft Windows Vista Ultimate SP1 Microsoft Windows Vista SP2 Microsoft Windows Vista SP1 Microsoft Windows Vista Home Premium SP2 Microsoft Windows Vista Home Premium SP1 Microsoft Windows Vista Home Premium Microsoft Windows Vista Home Basic SP2 Microsoft Windows Vista Home Basic SP1 Microsoft Windows Vista Home Basic Microsoft Windows Vista Enterprise SP2 Microsoft Windows Vista Enterprise SP1 Microsoft Windows Vista Enterprise Microsoft Windows Vista Business SP2 Microsoft Windows Vista Business SP1 Microsoft Windows Vista Business Microsoft Windows Vista 0 Microsoft Windows Server 2008 for x64-based Systems SP2 Microsoft Windows Server 2008 for x64-based Systems 0 Microsoft Windows Server 2008 for Itanium-based Systems SP2 Microsoft Windows Server 2008 for Itanium-based Systems 0 Microsoft Windows Server 2008 for 32-bit Systems SP2 Microsoft Windows Server 2008 for 32-bit Systems 0 Avaya Messaging Application Server MM 3.1 Avaya Messaging Application Server MM 3.0 Avaya Messaging Application Server MM 2.0 Avaya Messaging Application Server MM 1.1 Avaya Messaging Application Server 0 |
| Not Vulnerable: | |
Discussion
Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
Microsoft Windows TCP/IP protocol implementation is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successful attacks will completely compromise affected computers.
Microsoft Windows TCP/IP protocol implementation is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successful attacks will completely compromise affected computers.
Exploit / POC
Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
A working commercial exploit is available through BreakingPoint Systems. This exploit is not otherwise publicly available or known to be circulating in the wild.
A working commercial exploit is available through BreakingPoint Systems. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
Solution:
The vendor has released an update. Please see the references for details.
Microsoft Windows Server 2008 for 32-bit Systems SP2
Microsoft Windows Vista x64 Edition 0
Microsoft Windows Vista 0
Microsoft Windows Vista x64 Edition SP1
Microsoft Windows Vista SP1
Microsoft Windows Server 2008 for x64-based Systems 0
Microsoft Windows Server 2008 for Itanium-based Systems SP2
Microsoft Windows Server 2008 for x64-based Systems SP2
Microsoft Windows Vista SP2
Microsoft Windows Vista x64 Edition SP2
Microsoft Windows Server 2008 for Itanium-based Systems 0
Microsoft Windows Server 2008 for 32-bit Systems 0
Solution:
The vendor has released an update. Please see the references for details.
Microsoft Windows Server 2008 for 32-bit Systems SP2
-
Microsoft Security Update for Windows Server 2008 (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=35c1d5a9-a953 -4fc6-90c0-d2358c7b89e6
Microsoft Windows Vista x64 Edition 0
-
Microsoft Security Update for Windows Vista for x64-based Systems (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=b2930ff1-5f0a -4a5d-bf2a-9fb76dd8da63
Microsoft Windows Vista 0
-
Microsoft Security Update for Windows Vista (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=7d72f845-9feb -4685-a669-f9d6ab54f9ed
Microsoft Windows Vista x64 Edition SP1
-
Microsoft Security Update for Windows Vista for x64-based Systems (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=b2930ff1-5f0a -4a5d-bf2a-9fb76dd8da63
Microsoft Windows Vista SP1
-
Microsoft Security Update for Windows Vista (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=7d72f845-9feb -4685-a669-f9d6ab54f9ed
Microsoft Windows Server 2008 for x64-based Systems 0
-
Microsoft Security Update for Windows Server 2008 x64 Edition (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=6e46822e-f79d -492d-ad01-ee680ad324f5
Microsoft Windows Server 2008 for Itanium-based Systems SP2
-
Microsoft Security Update for Windows Server 2008 for Itanium-based Systems (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=2ac76ee2-b1b6 -4300-9cba-af33d9dd54eb
Microsoft Windows Server 2008 for x64-based Systems SP2
-
Microsoft Security Update for Windows Server 2008 x64 Edition (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=6e46822e-f79d -492d-ad01-ee680ad324f5
Microsoft Windows Vista SP2
-
Microsoft Security Update for Windows Vista (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=7d72f845-9feb -4685-a669-f9d6ab54f9ed
Microsoft Windows Vista x64 Edition SP2
-
Microsoft Security Update for Windows Vista for x64-based Systems (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=b2930ff1-5f0a -4a5d-bf2a-9fb76dd8da63
Microsoft Windows Server 2008 for Itanium-based Systems 0
-
Microsoft Security Update for Windows Server 2008 for Itanium-based Systems (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=2ac76ee2-b1b6 -4300-9cba-af33d9dd54eb
Microsoft Windows Server 2008 for 32-bit Systems 0
-
Microsoft Security Update for Windows Server 2008 (KB967723)
http://www.microsoft.com/downloads/details.aspx?familyid=35c1d5a9-a953 -4fc6-90c0-d2358c7b89e6
References
Microsoft Windows TCP/IP TimeStamps Remote Code Execution Vulnerability
References:
References:
- Assessing the risk of the September Critical security bulletins (Microsoft)
- Microsoft Homepage (Microsoft)
- ASA-2009-396 MS09-048 Vulnerabilities in Windows TCP/IP Could Allow Remote Code (Avaya)
- Microsoft Security Bulletin MS09-048 (Microsoft)
- Nortel Enterprise Response to Microsoft Security Bulletin MS09-048 (Nortel Networks)