Windows Animated Cursor Zero Day Exploit

By admin | Mar 30, 2007

cursor.jpgAn exploit has been found that allows remote code execution with privileges of the logged in user. Here lies another reason for non-root, non-admin user usage. Anyway, here is the info:

” In December 2006, Determina announced that it had found a number of new vulnerabilities affecting Microsoft Windows and related products. These were privately reported to Microsoft by Determina and no public information was released on how to exploit these vulnerabilities.

Today, Microsoft announced that they had found public exploits against one of these vulnerabilities - CVE-2007-0038. The problem relates to the processing of animated cursor icons, and the vulnerability is a buffer overflow in the processing code. Microsoft fixed a closely related vulnerability with their MS05-02 security update, but their fix was incomplete. Determina Security Research was able to bypass the patch and develop a proof-of-concept exploit that works on fully-patched Windows systems.”

Affected Systems:

  • Windows NT
  • Windows 2000
  • Windows XP
  • Windows 2003
  • Windows Vista

Source: Determina Security



Related Posts:

The system DLL user32.dll was relocated in memory
Ahhh, the joys of owning a computer! If you have received this message, it is due to a recent...

W32/Delbot-AI Nirbot DNS Exploit
News is circulating about a new zero day exploit on Windows DNS servers that allows local system rights in the...

Metafile Exploit
Once again, Microsoft finds itself defending against a serious security issue. Windows Metafile is a native vector graphics file...

Internet Explorer Extremely Critical Vulnerability
vulnerability has been discovered in Internet Explorer which could allow a malicious person to exploit a vulnerability. This...

Microsoft XMLHTTP ActiveX Control Exploit
Here's another extremely critical exploit out in the wild for Internet Explorer....
1 Comment so far
  1. […] this message, it is due to a recent patch that microsoft pushed out in response to a very bad Microsoft Windows Animated Cursor Buffer Overflow Vulnerability.  You may get a message like […]

Leave a Comment

If you would like to make a comment, please fill out the form below.

Name (required)

Email (required)

Website

Comments

© 2007 PaulTech Network, - Daily Blog Tips Themes