Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
BID:47834
Info
Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
| Bugtraq ID: | 47834 |
| Class: | Unknown |
| CVE: |
CVE-2011-1271 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 04 2011 12:00AM |
| Updated: | Jun 15 2011 11:30PM |
| Credit: | Brian Mancini |
| Vulnerable: |
Microsoft .NET Framework 3.5.1 Microsoft .NET Framework 4.0 Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 3.5 Microsoft .NET Framework 2.0 SP2 Microsoft .NET Framework 2.0 SP1 Microsoft .NET Framework 2.0 BETA Microsoft .NET Framework 2.0 Avaya Messaging Application Server 5.2 Avaya Messaging Application Server 5 Avaya Messaging Application Server 4 Avaya Meeting Exchange - Webportal 0 Avaya Meeting Exchange - Web Conferencing Server 0 Avaya Meeting Exchange - Streaming Server 0 Avaya Meeting Exchange - Recording Server 0 Avaya Meeting Exchange - Client Registration Server 0 Avaya Meeting Exchange 5.0 .0.52 Avaya Meeting Exchange 5.2 SP2 Avaya Meeting Exchange 5.2 SP1 Avaya Meeting Exchange 5.2 Avaya Meeting Exchange 5.1 SP1 Avaya Meeting Exchange 5.1 Avaya Meeting Exchange 5.0 SP2 Avaya Meeting Exchange 5.0 SP1 Avaya Meeting Exchange 5.0 Avaya Communication Server 1000 Telephony Manager 4.0 Avaya Communication Server 1000 Telephony Manager 3.0 Avaya CallPilot 5.0 Avaya CallPilot 4.0 Avaya Aura Conferencing 6.0 Standard |
| Not Vulnerable: |
Microsoft .NET Framework 4.0 beta 2 |
Discussion
Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
The Microsoft .NET Framework is prone to a remote code-execution vulnerability that affects the Just-In-Time (JIT) compiler optimization on x86 architectures.
Successful exploits may allow an attacker to execute arbitrary code in the context of the browser; this may aid in further attacks.
The Microsoft .NET Framework is prone to a remote code-execution vulnerability that affects the Just-In-Time (JIT) compiler optimization on x86 architectures.
Successful exploits may allow an attacker to execute arbitrary code in the context of the browser; this may aid in further attacks.
Exploit / POC
Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
The following code snippet illustrates this issue:
if ((value == null || value == new string[0]) == false)
The following code snippet illustrates this issue:
if ((value == null || value == new string[0]) == false)
Solution / Fix
Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Microsoft .NET Framework 2.0 SP2
Microsoft .NET Framework 3.5
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4.0
Microsoft .NET Framework 3.5.1
Solution:
Vendor updates are available. Please see the references for more information.
Microsoft .NET Framework 2.0 SP2
-
Microsoft Security Update for Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework 2.0 Service Pack
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 323
Microsoft .NET Framework 3.5
-
Microsoft Security Update for Microsoft .NET Framework 3.5 on Windows Server 2003 and Windows XP
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 295 -
Microsoft Security Update for Microsoft .NET Framework 3.5, Windows Vista Service Pack 1 and Windows Server 20
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 292
Microsoft .NET Framework 3.5 SP1
-
Microsoft Security Update for Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework 2.0 Service Pack
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 323 -
Microsoft Security Update for Microsoft .NET Framework 3.5 Service Pack 1 on Windows Vista Service Pack 1 and
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 294 -
Microsoft Security Update for Microsoft .NET Framework 3.5 Service Pack 1, Windows Vista Service Pack 2, and W
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 322
Microsoft .NET Framework 4.0
-
Microsoft Security Update for Microsoft .NET Framework 4
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 409
Microsoft .NET Framework 3.5.1
-
Microsoft Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 289 -
Microsoft Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 Service Pack 1 and Windows Server 20
http://www.microsoft.com/download/en/details.aspx?displaylang=en&id=26 429
References
Microsoft .NET Framework JIT Compiler Optimization NULL String Remote Code Execution Vulnerability
References:
References:
- Bug only occurring when compile optimization enabled (Brian Mancini)
- Microsoft Homepage (Microsoft)
- ASA-2011-178 MS11-044 Vulnerability in .NET Framework Could Allow Remote Code Ex (Avaya)
- Microsoft Security Bulletin MS11-044 - Critical (Microsoft)