Microsoft WINS Memory Overwrite Lets Remote Users Execute Arbitary Code
Categorie: Vulnerability Posted: 2004-12-01 by ReCall Views: 425 Source: Click here
Current Rating: Not rated
Details
Description: A vulnerability was reported in Microsoft Windows in 'wins.exe'. A remote user can execute arbitrary code on the target system.
Nicolas Waisman from Immunity reported that a remote user can send a specially crafted WINS packet to the target server on TCP port 42 to modify a memory pointer and write arbitrary contents to arbitrary memory locations. A remote user can execute arbitrary code on the target system.