Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
BID:7849
Info
Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
| Bugtraq ID: | 7849 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 09 2003 12:00AM |
| Updated: | Jun 09 2003 12:00AM |
| Credit: | This vulnerability was reported by NGSSoftware Insight Security Research <[email protected]>. |
| Vulnerable: |
Microsoft Windows Server 2003 Web Edition Microsoft Windows Server 2003 Standard Edition Microsoft Windows Server 2003 Enterprise Edition Itanium 0 Microsoft Windows Server 2003 Enterprise Edition Microsoft Windows Server 2003 Datacenter Edition Itanium 0 Microsoft Windows Server 2003 Datacenter Edition |
| Not Vulnerable: | |
Discussion
Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
Network device drivers for Windows Server 2003 have been reported to disclose potentially sensitive information to attackers.
Frames that are smaller than the minimum frame size should have the unused portion of the frame buffer padded with null (or other) bytes. Some device drivers do not do this adequately, leaving the data that was stored in the memory comprising the buffer prior to its use intact. Consequently, this data may be transmitted within frames across ethernet segments. As the ethernet frame buffer is allocated in kernel memory space, sensitive data may be leaked.
This vulnerability is similar to the issue described in BID 6535.
Network device drivers for Windows Server 2003 have been reported to disclose potentially sensitive information to attackers.
Frames that are smaller than the minimum frame size should have the unused portion of the frame buffer padded with null (or other) bytes. Some device drivers do not do this adequately, leaving the data that was stored in the memory comprising the buffer prior to its use intact. Consequently, this data may be transmitted within frames across ethernet segments. As the ethernet frame buffer is allocated in kernel memory space, sensitive data may be leaked.
This vulnerability is similar to the issue described in BID 6535.
Exploit / POC
Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft Windows FIN-ACK Network Device Driver Frame Padding Information Disclosure Vulnerability
References:
References:
- Etherleak information leak in Windows Server 2003 drivers (NGSSoftware Insight Security Research
)