Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
BID:54931
Info
Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
| Bugtraq ID: | 54931 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2012-1852 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 14 2012 12:00AM |
| Updated: | Aug 14 2012 12:00AM |
| Credit: | Yamata Li of Palo Alto Networks |
| Vulnerable: |
Microsoft Windows XP Service Pack 3 0 Microsoft Windows XP Professional x64 Edition SP2 Microsoft Windows XP Professional x64 Edition Microsoft Windows XP 0 |
| Not Vulnerable: | |
Discussion
Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
Microsoft Windows is prone to a remote heap-based buffer-overflow vulnerability because the library fails to perform adequate boundary-checks on user-supplied data.
Attackers can exploit this issue to execute arbitrary code with SYSTEM-level privileges, which can result in the complete compromise of affected computers.
Microsoft Windows is prone to a remote heap-based buffer-overflow vulnerability because the library fails to perform adequate boundary-checks on user-supplied data.
Attackers can exploit this issue to execute arbitrary code with SYSTEM-level privileges, which can result in the complete compromise of affected computers.
Exploit / POC
Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory and updates. Please see the references for details.
Solution:
The vendor has released an advisory and updates. Please see the references for details.
References
Microsoft Windows Remote Administration Protocol (RAP) Remote Heap Buffer Overflow Vulnerability
References:
References:
- Microsoft Homepage (Microsoft)