Windows 2000 DCOM Client Memory Disclosure Vulnerability
BID:4410
Info
Windows 2000 DCOM Client Memory Disclosure Vulnerability
| Bugtraq ID: | 4410 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 02 2001 12:00AM |
| Updated: | Aug 02 2001 12:00AM |
| Credit: | Published by Todd Sabin <[email protected]>. |
| Vulnerable: |
Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Professional SP2 Microsoft Windows 2000 Professional SP1 Microsoft Windows 2000 Professional Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server |
| Not Vulnerable: | |
Discussion
Windows 2000 DCOM Client Memory Disclosure Vulnerability
Microsoft Distributed Component Object Model (DCOM) can be used to support COM communication. A vulnerability has been reported with the DCOM client included with Windows 2000.
Under some circumstances, when the DCOM client sends a request, uninitialized memory is included in the transmitted data. This data is normally ignored by the server, having no impact on application performance. However, the data may include uninitialized areas of server memory, and lead to the disclosure of sensitive information.
At this time, the memory data disclosed is believed to be essentially random. An attacker must, at best, hope that sensitive information will be included in the client message by chance.
Microsoft Distributed Component Object Model (DCOM) can be used to support COM communication. A vulnerability has been reported with the DCOM client included with Windows 2000.
Under some circumstances, when the DCOM client sends a request, uninitialized memory is included in the transmitted data. This data is normally ignored by the server, having no impact on application performance. However, the data may include uninitialized areas of server memory, and lead to the disclosure of sensitive information.
At this time, the memory data disclosed is believed to be essentially random. An attacker must, at best, hope that sensitive information will be included in the client message by chance.
Exploit / POC
Windows 2000 DCOM Client Memory Disclosure Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Windows 2000 DCOM Client Memory Disclosure Vulnerability
References:
References:
- Q300367: DCOM Client May Put Memory on the Wire (Microsoft)
- Windows Update (Microsoft)