Microsoft Compressed Folders Hostile Decompression Path Vulnerability
BID:5876
Info
Microsoft Compressed Folders Hostile Decompression Path Vulnerability
| Bugtraq ID: | 5876 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2002-1139 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 03 2002 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | Discovery of this vulnerability credited to zen-parse. |
| Vulnerable: |
Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows ME Microsoft Windows 98 With Plus! Pack |
| Not Vulnerable: | |
Discussion
Microsoft Compressed Folders Hostile Decompression Path Vulnerability
The Compressed Folders feature allows zipped archives to be treated as folders. The vulnerability is the result of a flaw in the decompression routine. This results in an attacker being able to specify a hostile path for files when a zipped archive is decompressed.
This will allow an attacker to decompress files and store the files in an attacker-specified directory on the filesystem.
The Compressed Folders feature allows zipped archives to be treated as folders. The vulnerability is the result of a flaw in the decompression routine. This results in an attacker being able to specify a hostile path for files when a zipped archive is decompressed.
This will allow an attacker to decompress files and store the files in an attacker-specified directory on the filesystem.
Exploit / POC
Microsoft Compressed Folders Hostile Decompression Path Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Compressed Folders Hostile Decompression Path Vulnerability
Solution:
Microsoft has patches available for this issue. Users of Microsoft Windows Me will be able to obtain patches through Windows Update.
Microsoft Windows XP Home
Microsoft Windows XP Professional
Microsoft Windows XP Professional SP1
Microsoft Windows XP Home SP1
Microsoft Windows 98 With Plus! Pack
Solution:
Microsoft has patches available for this issue. Users of Microsoft Windows Me will be able to obtain patches through Windows Update.
Microsoft Windows XP Home
-
Microsoft Q329048
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=43419 -
Microsoft Windows XP Service Pack 1
http://www.microsoft.com/WindowsXP/pro/downloads/servicepacks/sp1/defa ult.asp
Microsoft Windows XP Professional
-
Microsoft Q329048
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=43419 -
Microsoft Windows XP Service Pack 1
http://www.microsoft.com/WindowsXP/pro/downloads/servicepacks/sp1/defa ult.asp
Microsoft Windows XP Professional SP1
-
Microsoft Q329048
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=43419
Microsoft Windows XP Home SP1
-
Microsoft Q329048
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=43419
Microsoft Windows 98 With Plus! Pack
References
Microsoft Compressed Folders Hostile Decompression Path Vulnerability
References:
References:
- Microsoft Security Bulletin MS02-054 (Microsoft)
- Windows Update (Microsoft)