MS.Windows.RRAS.RASMAN.Buffer.Overflow
Description
This indicates an attempt to exploit a vulnerability in Microsoft Windows Routing and Remote Access. The vulnerability is a result of a failure to properly bounds check user supplied network data before copying it to a memory buffer. A remote attacker can send specially crafted data to cause memory corruption, and may be able to execute arbitrary code on the system.
Affected Products
Microsoft Windows 2000 SP4
Microsoft Windows XP SP1, SP2
Microsoft Windows XP Professional x64 Edition
Microsoft Windows Server 2003 and Microsoft Windows Server 2003 SP1
Microsoft Windows Server 2003 for Itanium-based Systems, SP1
Microsoft Windows Server 2003 x64 Edition
Impact
System compromise, arbitrary code execution.
Recommended Actions
Microsoft Security Bulletin MS06-025 addresses this issue.
http://www.microsoft.com/technet/security/bulletin/MS06-025.mspx
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |