Trend Micro Facebook TrendLabs Twitter Malware Blog RSS Feed You Tube - Trend Micro
Search our blog:

  • Recent Posts

  • Calendar

    August 2006
    S M T W T F S
    « Jul   Sep »
     12345
    6789101112
    13141516171819
    20212223242526
    2728293031  
  • About Us
    Malware Blog > 2006 > August> 10

    Archive for August 10th, 2006




    For this month’s bunch of MS security bulletins, it looks like MS06-040 (Vulnerability in Server Service Could Allow Remote Code Execution) is a very “wormable” vulnerability. MS06-040 is your typical stack overflow vulnerability. Moreover, according to the security bulletin, “Microsoft had received information that this vulnerability was being exploited” when the bulletin was released.


    As of this writing, there are already three tools equipped to exploit MS06-040, and one MS06-040 NetApi32 scanner.



    Update (Jovs, Sat, 12 Aug 2006 08:52:42 AM)

    In addition to this, blocking TCP ports 139 and 445 at the firewall will help protect systems that are behind that firewall. Also, Trend Micro NVP Solution can now detect the exploit at the gateway. For more information about this, check the Microsoft Advisory for MSO6-040 here.

     

     
    Posted in Uncategorized | Comments Off


     

    © Copyright 2011 Trend Micro Inc. All rights reserved. Legal Notice