MS07-040 - remote code execution in .NET Framework?



Can anyone explain how the issues

..NET PE Loader Vulnerability - CVE-2007-0041
..NET JIT Compiler Vulnerability - CVE-2007-0043

could affect a system? According to the description, it allows an attacker
to execute arbitrary code withing the context of the current user. As by
what the PE Loader and the JIT Compiler do, it seems like it would require
the user to execute the malicious program.

I wonder how this should be a security vulnerability since every .NET
program it free to do whatever it wants. Code Access Security is designed to
only help legitimate programs limiting their impact on the system but not to
provide any kind of sandbox, and especially .NET 1.x (listed as affected) is
impossible to redesign for providing any kind of sandboxing.

Alternately: Do you know where and how to contact any representative of the
Microsoft Security Team that could explain the issue?
.



Relevant Pages

  • SecurityFocus Microsoft Newsletter #165
    ... Tenable Security ... distribute, manage, and communicate vulnerability and intrusion detection ... Microsoft Internet Explorer MHTML Forced File Execution Vuln... ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #174
    ... This issue sponsored by: Tenable Network Security ... the worlds only 100% passive vulnerability ... MICROSOFT VULNERABILITY SUMMARY ... Novell Netware Enterprise Web Server Multiple Vulnerabilitie... ...
    (Focus-Microsoft)
  • [NT] Cumulative Security Update for Internet Explorer (MS04-038)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... CSS Heap Memory Corruption Vulnerability, ... Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6 ...
    (Securiteam)
  • SecurityFocus Microsoft Newsletter #171
    ... Better Management for Network Security ... GoodTech Telnet Server Remote Denial Of Service Vulnerabilit... ... ASPApp PortalAPP Remote User Database Access Vulnerability ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #160
    ... MICROSOFT VULNERABILITY SUMMARY ... Geeklog Forgot Password SQL Injection Vulnerability ... Atrium Software Mercur Mailserver IMAP AUTH Remote Buffer Ov... ... Sun Java Virtual Machine Slash Path Security Model Circumven... ...
    (Focus-Microsoft)