NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft

Microsoft


Symantec Explains the Vista CSRSS Vulnerability

Arbitrary code execution is a possibility

By Marius Oiaga, Technology News Editor

6th of January 2007, 10:45 GMT

Adjust text size:


Exploit code for a vulnerability in the Client Server Run-Time Subsystem impacting the Windows 2000 SP4, Windows Server 2003 SP1, Windows XP SP1, Windows XP SP2 and Windows
Vista operating systems has been available since December 20, 2006. On the very same day, Microsoft has confirmed the Windows MessageBox Vulnerability and revealed that the Proof-of-Concept allows for local elevation of privilege. According to security vendor McAfee, PoC has been published in the wild on 29 and 31 December 2007.

Peter Ferrie, Senior Principal Software Engineer Symantec Security Response, has commented on the double-free bug in a CSRSS message function, confirming the fact that the flaw indeed impacts Windows Vista, but not in a reliable manner.

"Of course, that the bug isn't reliable on Vista doesn't mean that everyone can relax. The bug does affect earlier versions of Windows, where arbitrary code execution is far easier to achieve. Is it likely to be exploited? Oh yes," predicted Ferrie.

Ferrie explained that although a successful exploit of the Windows MessageBox Vulnerability will most likely produce a denial of service, the execution of arbitrary code cannot be ruled out.

"Why the fuss? Simply put, successful exploitation of the bug allows even the most restricted user-mode application to elevate its privileges to the System level. From there, the kernel is accessible even on Vista. Even without entering the kernel, System-level privileges allow almost complete control of the system, so the possibilities are limited only by the imagination," commented Ferrie.
Read by 2,864 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Good (3.5/5) 8 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Medium Rating for Vista MessageBox Vulnerability

Vista Puerile Commercials Episode 2 and 3

Texas Hold 'Em in Windows Vista

Vista Will Not Guarantee Protection against Malware

Search in Windows Vista

Swap the Behavior of the Windows Vista Power Button

Windows Vista Migration Software

Zip and Unzip in Windows Vista

Microsoft Still Supports Windows Vista Beta

Life After Windows Vista

Vista Hybrid Sleep

Take Control of the Vista Explorer

Vista to Generate $70 Billion in Revenue for the U.S. IT industry

Windows Fiji - The Next Version of Windows

Is Your PC Ready for Windows Vista?

Windows Vista Phone Activation Crack

Vista Is the Last Windows

XP Reigns Supreme in 2006

Windows Vista's Details

Unauthorized Windows Vista DVDs on Sale

Vista Randomization Gets Support from Dell, HP and Gateway

Add Check Boxes to Explorer Items

Windows Vista Graphical User Interface(s)

Windows Server Home and Windows Live Drive

A Windows Vista Zero-Day Exploit Costs $50,000

Windows Vista Activation Crack

Apple's Leopard Is Copying Vista?

Microsoft Opens Up the Vista Kernel

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM