MinorRev: Microsoft Security Bulletin MS03-045 - Buffer Overrun in the ListBox and in the ComboBox Control Could Allow Code Execution (824141)

From: Russ (Russ.Cooper_at_RC.ON.CA)
Date: 11/04/03

  • Next message: http-equiv_at_excite.com: "Re: Six Step IE Remote Compromise Cache Attack"
    Date:         Mon, 3 Nov 2003 18:03:03 -0500
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    Reason for Revision:
    V3.1 November 3, 2003: Updated Patch Replacement section. This patch
    replaces the patch provided by Security Bulletin MS02-071.

    Microsoft Security Bulletin MS03-045:
    Buffer Overrun in the ListBox and in the ComboBox Control Could Allow
    Code Execution (824141)

    Bulletin URL:
    http://www.microsoft.com/technet/security/bulletin/MS03-045.asp

    Summary:
     Version Number: V3.1
     Revision Date: 11-03-2003
     Impact of Vulnerability: Local Elevation of Privilege
     Maximum Severity Rating: Important
     Patch(es) Replaced: MS02-071
     Caveats: None
     CVE Number(s): CAN-2003-065

    Tested Software:
     Affected Software:
     * Microsoft Windows NT Workstation 4.0, Service Pack 6a
    <http://www.ntbugtraq.com/link/5EA88ABE-8D53-4E25-959C-E80EB5FD7A91.asp>
     * Microsoft Windows NT Server 4.0, Service Pack 6a
    <http://www.ntbugtraq.com/link/F3E87075-AAE5-49F4-9D37-24A116296188.asp>
     * Microsoft Windows NT Server 4.0, Terminal Server Edition, Service
    Pack 6
    <http://www.ntbugtraq.com/link/0ADC8D90-2355-49A0-976B-57281B4521C1.asp>
     * Microsoft Windows 2000, Service Pack 2
    <http://www.ntbugtraq.com/link/01358EAC-F1C5-4CB7-BE3D-64459F4AD3FD.asp>
     * Microsoft Windows 2000 Service Pack 3, Service Pack 4
    <http://www.ntbugtraq.com/link/379F234D-CE7E-4897-8D29-0764997F1E42.asp>
     * Microsoft Windows XP Gold, Service Pack 1
    <http://www.ntbugtraq.com/link/ABC764AC-5B7B-4B99-BF3E-F57352E4C507.asp>
     * Microsoft Windows XP 64 bit Edition
    <http://www.ntbugtraq.com/link/3E7B03BF-2231-4069-B76F-0BD69CF6E1D9.asp>
     * Microsoft Windows XP 64 bit Edition Version 2003
    <http://www.ntbugtraq.com/link/E4BD7C05-EA0E-49C7-9BDD-ABB496CA87CA.asp>
     * Microsoft Windows Server 2003
    <http://www.ntbugtraq.com/link/02F97DE4-29DF-4D33-A33B-E7630349E69E.asp>
     * Microsoft Windows Server 2003 64 bit Edition
    <http://www.ntbugtraq.com/link/E4BD7C05-EA0E-49C7-9BDD-ABB496CA87CA.asp>

     Software Not Affected:
     * Microsoft Windows Millennium Edition

    This email is sent to NTBugtraq automagically as a service to my
    subscribers. (v2.0)

    Cheers,
    Russ - Surgeon General of TruSecure Corporation/NTBugtraq Editor

    ----
    NTBugtraq subscribers save $103.00 off the TICSA exam by using promo
    code "NT1003" when registering to take the TICSA exam at www.2test.com.
    Prove to your employer and peers that you have the knowledge and
    abilities to be an active stakeholder in today's enterprise security.
    Become TICSA certified www.trusecure.com/ticsa.  Promotion expires
    12/31/03 and cannot be used in combination with other offers.
    ----
    

  • Next message: http-equiv_at_excite.com: "Re: Six Step IE Remote Compromise Cache Attack"

    Relevant Pages

    • Cisco Security Response: Mitigating Exploitation of the MS06-040 Service Buffer Vulnerability
      ... remote users that establish sessions with our corporate network. ... Microsoft Windows 2000 Service Pack 4 ... Microsoft Windows Server 2003 Service Pack 1 ...
      (Pen-Test)
    • <<< Small Biz Server this week July 18th 2004 >>>
      ... discovered vulnerabilities in Microsoft Windows. ... - Microsoft Windows NT Workstation 4.0 Service Pack 6a ... - Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6 ... Restart required: In some cases, this update does not require a ...
      (microsoft.public.windows.server.sbs)
    • <<< Small Biz Server this week July 18th 2004 >>>
      ... discovered vulnerabilities in Microsoft Windows. ... - Microsoft Windows NT Workstation 4.0 Service Pack 6a ... - Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6 ... Restart required: In some cases, this update does not require a ...
      (microsoft.public.backoffice.smallbiz)
    • <<< Small Biz Server this week July 18th 2004 >>>
      ... discovered vulnerabilities in Microsoft Windows. ... - Microsoft Windows NT Workstation 4.0 Service Pack 6a ... - Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6 ... Restart required: In some cases, this update does not require a ...
      (microsoft.public.backoffice.smallbiz2000)
    • [NT] IIS NNTP Service XPAT Command Vulnerabilities (PoC)
      ... * Microsoft Windows NT Server 4.0 Service Pack 6a NNTP component ... The NNTP service allocates a 4000 bytes buffer that it uses to store the ... A pointer to the buffer as well as a pointer to the ...
      (Securiteam)