HOME > VULNERABILITY NOTES


   VULNERABILITY NOTES

CERT-In Vulnerability Note CIVN-2006-101
Denial of Service in Server Service Vulnerability

Original Issue Date: October 11, 2006

Severity Rating: Low

System Affected

  • Microsoft Windows 2000 SP4
  • Microsoft Windows XP SP1 and Microsoft Windows XP SP2
  • Microsoft Windows XP Professional x64 Edition
  • Microsoft Windows Server 2003 and Microsoft Windows Server 2003 SP1
  • Microsoft Windows Server 2003 for Itanium-based Systems and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
  • Microsoft Windows Server 2003 x64 Edition

Overview

Two vulnerabilities have been reported in Microsoft Windows Server Service that could be exploited by an attacker to compromise the vulnerable system.

Description

The Server service provides RPC support, files print support and named pipe sharing over the network.

Server Service Denial of Service Vulnerability- CVE-2006-3942 :

A denial of service vulnerability has been reported in Windows server service.

The vulnerability is caused due to an unchecked buffer in server service while handling malformed requests.

The attacker could exploit this vulnerability by creating and sending specially crafted messages to a vulnerable system. The messages could then cause the denial of service and system could stop responding.

SMB Rename Vulnerability - CVE-2006-4696 :

A remote code execution vulnerability has been reported in the Windows server service.

The vulnerability is caused due to server service's attempt to dereference an invalid pointer.

The attacker could exploit this vulnerability by creating and sending specially crafted messages to a vulnerable system. The messages could then be used to execute malicious code on the vulnerable system to take complete control of the system remotely.

Workarounds

  • Block UDP ports 135, 137, 138, and 445, and TCP ports 135, 139, 445, and 593TCP port 139 and 445 at the firewall
  • Use a personal firewall
  • Enable advanced TCP/IP filtering on systems.
  • Block the affected ports by using IPSec on the affected systems.

Solution

Apply appropriate patches as mentioned in Microsoft Security Bulletin MS06-063

Refrences

Microsoft
http://www.microsoft.com/technet/security/Bulletin/MS06-063.mspx

CVE Name
CVE-2006-3942
CVE-2006-4696

Disclaimer

The information provided herein is on "as is" basis, without warranty of any kind.

Contact Information


Phone: +91-11-24368572

Postal address

Indian Computer Emergency Response Team (CERT-In)
Ministry of Communications and Information Technology
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003