CERT-In Vulnerability Note
CIVN-2010-0262
Microsoft Windows Routing and Remote Access Local Privilege Escalation Vulnerability
Original Issue Date:December 15, 2010
Severity Rating: MEDIUM
Systems Affected
- Windows XP SP3 and prior
- Windows XP Professional x64 Edition SP2 and prior
- Windows Server 2003 SP2 and prior
- Windows Server 2003 x64 Edition SP2 and prior
- Windows Server 2003 Itanium-based Edition SP2 and prior
Overview
A vulnerability has been reported in Routing and Remote Access NDProxy component of Microsoft Windows that could allow a local user to to gain elevated privileges on a targeted system.
Description
NDPROXY is a system-provided driver that interfaces NDISWAN and CoNDIS WAN drivers (WAN miniport drivers, call managers, and miniport call managers) to the TAPI(Telephony_Application_Programming_Interface) services. NDPROXY provides the kernel-mode component of the service provider interface (SPI) for CoNDIS WAN.
The vulnerability is due to improper validation of user-supplied input to the Windows Kernel. A local user could exploit the vulnerability by running a malicious program that is designed to submit input to the NDProxy component. If successful, the attacker could create a a buffer overflow condition and execute arbitrary code on the system with kernel level privileges.
Solution
Apply appropriate patches as mentioned in the Microsoft Security Bulletin
MS10-099
Vendor Information
Microsoft
http://www.microsoft.com/technet/security/bulletin/ms10-099.mspx
http://msdn.microsoft.com/en-us/library/ff568322%28VS.85%29.aspx
References
SecurityTracker
http://securitytracker.com/alerts/2010/Dec/1024881.html
Cisco
http://tools.cisco.com/security/center/viewAlert.x?alertId=21999
CVE Name
CVE-2010-3963
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|