Microsoft Windows WRITE_ANDX SMB处理远程拒绝服务漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

BUGTRAQ ID: 31179 CNCAN ID:CNCAN-2008091604 Microsoft Windows是一款商业性质的操作系统。 Microsoft Windows srv.sys驱动处理畸形WRITE_ANDX SMB报文存在问题,远程攻击者可以利用漏洞对系统进行拒绝服务攻击。 srv.sys和npfs.sys驱动在处理特殊构建的WRITE_ANDX SMB报文时存在问题,可导致触发内核拒绝服务攻击。远程攻击者可以无需在目标机器上有合法验证条文而利用此漏洞。要获得成功的攻击,攻击者只要能远程发送WRITE_ANDX报文到使用有名管道作为端点的接口即可。这些接口在Windows平台中允许NULL会话,在vista上可通过?\LSARPC?成功利用。 Microsoft Windows XP Professional x64 Edition SP3 Microsoft Windows XP Professional x64 Edition SP2 Microsoft Windows XP Professional x64 Edition Microsoft Windows XP Professional SP3 Microsoft Windows XP Professional SP2 Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Media Center Edition SP3 Microsoft Windows XP Media Center Edition SP2 Microsoft Windows XP Media Center Edition SP1 Microsoft Windows XP Media Center Edition Microsoft Windows XP Home SP3 Microsoft Windows XP Home SP2 Microsoft Windows XP Home SP1 Microsoft Windows XP Home Microsoft Windows XP Gold 0 Microsoft Windows XP 64-bit Edition SP1...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息