Windows Web Services on Devices API Memory Corruption Vulnerability
SECUNIA ADVISORY ID: SA37314
VERIFY ADVISORY: http://secunia.com/advisories/37314/
DESCRIPTION: A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to an unspecified error in the processing of WSD messages and can be exploited to corrupt memory via a WSDAPI message containing a specially crafted header.
Successful exploitation allows execution of arbitrary code, but requires that a service or application uses the API or performs remote device discovery.
SOLUTION: Apply patches.
Windows Vista (optionally with SP1 / SP2): http://www.microsoft.com/downloads/details.aspx?familyid=ebf0c294-cd99-445a-a741-78253e47189f
Windows Vista x64 Edition (optionally with SP1 / SP2): http://www.microsoft.com/downloads/details.aspx?familyid=d9645fc9-f524-43f1-8b8c-94b3b4312158
Windows Server 2008 for 32-bit Systems (optionally with SP2): http://www.microsoft.com/downloads/details.aspx?familyid=d6a60883-b103-459a-a91b-cd6ed946cefe
Windows Server 2008 for x64-based Systems (optionally with SP2): http://www.microsoft.com/downloads/details.aspx?familyid=3dde1587-42d3-438f-8344-696a5657b9b1
Windows Server 2008 for Itanium-based Systems (optionally with SP2): http://www.microsoft.com/downloads/details.aspx?familyid=841a027f-22fa-42de-93b3-57a3fe92a1d3
PROVIDED AND/OR DISCOVERED BY: The vendor credits Neel Mehta, Google Inc.
ORIGINAL ADVISORY: MS09-063 (KB973565): http://www.microsoft.com/technet/security/Bulletin/MS09-063.mspx
———————————————————————-
