Peaches Posted November 25, 2008 Report Share Posted November 25, 2008 24 November 2008, 12:57Buffer overflow in Vista's TCP/IP stack "Researchers at Austrian firewall maker phion AG have discovered a local vulnerability in Windows Vista's TCP/IP stack that may be exploited to obtain complete control of the operating system. Phion's security advisory says that calling the Windows CreateIpForwardEntry2 API function with a cunningly chosen parameter causes a kernel memory area to be overwritten, so that the system crashes with the dreaded blue screen. The same effect can reportedly be achieved by issuing the command route add and inputting a net mask with more than 32 bits as a parameter – evidently this command uses the same Windows function." Heise Security: http://www.heise-online.co.uk/security/Buf...k--/news/112040 Quote Link to post Share on other sites
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.