CERT-In Vulnerability Note
CIVN-2010-0260
Insecure Library Loading in Internet Connection Signup Wizard
Original Issue Date:December 15, 2010
Severity Rating: MEDIUM
Component Affected
- Windows XP Service Pack 3
- Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition Service Pack 2
- Windows Server 2003 with SP2 for Itanium-based Systems
Overview
A Vulnerability has been reported in Microsoft Internet Connection Signup Wizard, which could allow execution of arbitrary code and conduct DLL hijacking attacks
Description
The vulnerability is caused when the Internet Connection Signup Wizard improperly restricts the path used for loading external libraries. The vulnerability could allow remote code execution if a user opens an .ins or .isp file located in the same network folder as a specially crafted library file.
Note: For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a document from this location that is then loaded by a vulnerable application.
Solution
Apply appropriate updates as mentioned in the Microsoft Security Bulletin
MS10-097
Vendor Information
Microsoft
http://www.microsoft.com/technet/security/bulletin/ms10-097.mspx
References
Microsoft
http://www.microsoft.com/technet/security/bulletin/ms10-097.mspx
http://support.microsoft.com/kb/2443105/de
Vupen
http://www.vupen.com/english/advisories/2010/3219
CVE Name
CVE-2010-3144
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|