MS09-001: Microsoft’s first patch release for year 2009

Microsoft has released its MS09 series by patching a highly critical SMB vulnerability affecting Win2k, Win2k3, Winxp and even Vista and Win2k8.

Microsoft ratings are as mentioned below:

Operating System

Severity Rating

Microsoft Windows 2000 Service Pack 4

Critical

Windows XP Service Pack 2 and Windows XP Service Pack 3

Critical

Windows XP Professional x64 Edition and Windows XP Professional x64 Edition Service Pack 2

Critical

Windows Server 2003 Service Pack 1 and Windows Server 2003 Service Pack 2

Critical

Windows Server 2003 x64 Edition and Windows Server 2003 x64 Edition Service Pack 2

Critical

Windows Server 2003 with SP1 for Itanium-based Systems and Windows Server 2003 with SP2 for Itanium-based Systems

Critical

Windows Vista and Windows Vista Service Pack 1

Moderate

Windows Vista x64 Edition and Windows Vista x64 Edition Service Pack 1

Moderate

Windows Server 2008 for 32-bit Systems*

Moderate

Windows Server 2008 for x64-based Systems*

Moderate

Windows Server 2008 for Itanium-based Systems

Moderate

Table below summarizes the exposure of each version of Windows.

Exposure
Windows 2000 RCE
Windows XP RCE
Windows Server 2003 RCE
Windows Vista DoS
Windows Server 2008 DoS

However the possiblities of the two RCE vulnerabilities affecting all Windows version are unlikely to result in functioning exploit code as stated in the Microsoft exploitability index

The reason being:

  • The vulnerabilities cause a fixed value (zero) to be written to kernel memory – not data that the attacker controls.
  • Controlling what data is overwritten is difficult. To exploit this type of kernel buffer overrun, an attacker typically needs to be able to predict the layout and contents of memory. The memory layout of the targeted machine will depend on various factors such as the physical characteristics (RAM, CPUs) of the system, system load, other SMB requests it is processing, etc.

However, it should be on top to-do lists for any system guy as its impact is very high. I am on it!!!

Similar Posts you might be interested in:

Share and Enjoy:
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google Bookmarks
  • LinkedIn
  • MySpace

Leave a Reply