Microsoft Outlook Express Buffer Overflow in NNTP Response Parser Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1014200
|
|
SecurityTracker URL: http://securitytracker.com/id?1014200
|
|
CVE Reference: CVE-2005-1213
(Links to External Site)
|
Updated: Jul 7 2008
|
Original Entry Date: Jun 14 2005
|
Impact: Execution of arbitrary code via network, User access via network
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Advisory: Microsoft Security Advisory
|
Version(s): 5.5 SP2, 6 SP1; and prior service packs
|
Description: A vulnerability was reported in Microsoft Outlook Express in the news reader. A remote user can cause arbitrary code to be executed.
The NNTP response parsing function contains a buffer overflow. A remote user can direct a target user to a malicious NNTP news server.
When the target user views a list of available newsgroups on the server, arbitrary code will be executed on the target user's system.
The code will run with the privileges of the target user.
The target user must agree to view a list of available newsgroups
on the remote server for the exploit to work.
Microsoft credits iDEFENSE with reporting this vulnerability.
|
Impact: A remote user can cause arbitrary code to be executed on the target user's system with the privileges of the target user.
|
Solution: The vendor has issued the following fixes (a cumulative update):
Outlook Express 5.5 Service Pack 2 on Microsoft Windows 2000
Service Pack 3 and on Microsoft Windows 2000 Service Pack 4:
http://www.microsoft.com/downloads/details.aspx?FamilyId=a6932151-2ae2-4c6e-861a-6ff5bde61191
Outlook
Express 6 Service Pack 1 on Microsoft Windows 2000 Service Pack 3, on Microsoft Windows 2000 Service Pack 4, or on Microsoft Windows
XP Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=89e4d8ee-4d8e-4660-a53d-28502b3d2518
Outlook Express
6 Service Pack 1 for Microsoft Windows XP 64-Bit Edition Service Pack 1 (Itanium):
http://www.microsoft.com/downloads/details.aspx?FamilyId=b765c0e1-f4e2-495b-aae5-2db
3eeaf71bb
Outlook Express 6 for Microsoft Windows XP 64-Bit Edition Version 2003 (Itanium):
http://www.microsoft.com/downloads/details.aspx?familyid=69901ec1-a11f-4
135-9874-3698bcf7c760
Outlook Express 6 for Microsoft Windows Server 2003 for Itanium-based Systems:
http://www.microsoft.com/downloads/details.aspx?familyid=5fc7d6
8b-92a6-4c03-8d88-b2501aea8da6
Outlook Express 6 for Microsoft Windows Server 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=d439eee9-05eb-4ecb-9e86
-6259f1acaabb
A restart may be required.
This fix is included in Windows Server 2003 Service Pack 1 and Windows XP Service
Pack 2.
|
Vendor URL: www.microsoft.com/technet/security/Bulletin/MS05-030.mspx (Links to External Site)
|
Cause: Boundary error
|
Underlying OS: Windows (2000), Windows (2003), Windows (XP)
|
Underlying OS Comments: 2000 SP4, XP SP1, 2003; and prior service packs
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 14 Jun 2005 15:01:24 -0400
Subject: http://www.microsoft.com/technet/security/Bulletin/MS05-030.mspx
|
http://www.microsoft.com/technet/security/Bulletin/MS05-030.mspx
|
|