积极预防 及时发现
快速响应 力保恢复
Microsoft Telnet Server是Microsoft Windows 2000和Mic...
发布时间:2002-03-13 信息来源:管理员

CNCVE编号:CNCVE-20020063 CVE编号:CAN-2002-0020 安全级别:高 漏洞中文描述: Microsoft Telnet Server是Microsoft Windows 2000和Microsoft Interix平台下远程shell服务程序。这两个平台下的Telnet Server在处理telnet协议选项的代码上存在缓冲溢出的漏洞。由于没有正确地对用户提供的telnet协议选项的内容进行检查,远程攻击者可能发送一些畸形的数据报文来使得一个内部缓冲区发生溢出,这可能使Telnet Server崩溃,而且可能导致任意代码在目标系统上执行。对于Windows 2000系统,攻击者可能获取SYSTEM用户权限;而对于Microsoft Interix 2.2,攻击者获取的权限依赖于系统管理员在安装时所选择的telnet运行用户身份。 漏洞英文描述: The Telnet protocol provides remote shell capabilities. Microsoft has implemented the Telnet protocol by providing a Telnet Server in several products. The implementations in two of these products ?Windows 2000 and Interix 2.2 ?contain unchecked buffers in the code that handles the processing of telnet protocol options. An attacker could use this vulnerability to perform a buffer overflow attack. A successful attack could cause the Telnet Server to fail, or in some cases, could possibly allow an attacker to execute code of her choice on the system. Such code would execute using the security context of the Telnet service, but this context varies from product to product. In Windows 2000, the Telnet service always runs as System; in the Interix implementation, the administrator selects the security context in which to run as part of the installation process. 漏洞参考: http://www.microsoft.com/technet/security/bulletin/MS02-004.asp 系统类型: Win2000/NT 漏洞类型:边界溢出