积极预防 及时发现
快速响应 力保恢复
微软安全公告 MS04-007: Windows系统ASN.1库两个严重安全漏洞
发布时间:2004-02-11 信息来源:管理员

发布日期:2004-2-10 报告日期:2003-6-25 严重程度:高(远程代码执行) 受影响系统: Microsoft Windows NT 4.0 (all versions) Microsoft Windows 2000 (SP3 and earlier) Microsoft Windows XP (all versions) 受影响软件: Microsoft Internet Explorer Microsoft Outlook Microsoft Outlook Express Third-party applications that use certificates 影响的服务: Kerberos (UDP/88) Microsoft IIS using SSL NTLMv2 authentication (TCP/135, 139, 445) 描述: eEye Digital发现了Microsoft's ASN.1 库 (MSASN1.DLL)中存在一紧急漏洞,该漏洞允许攻击者在受影响的机器上覆盖堆内容,执行任意代码。该漏洞产生是由于Microsoft's ASN.1 库使用Windows的安全子系统,该漏洞可以被利用绕过路径,包括Kerberos,NTLMv2验证,应用软件的证书(SSL, digitally-signed e-mail, signed ActiveX controls,等) 注意:该漏洞的危险级别是紧急,其可直接影响到你的邮件系统、浏览器和操作系统。Microsoft Windows NT 4.0,Microsoft Windows 2000,Microsoft Windows XP用户注意打补丁。补丁信息和相关链接如下: 相关链接: http://www.eeye.com/html/Products/Retina/index.html 补丁链接: http://www.microsoft.com/technet/security/bulletin/MS04-007.asp 发布日期:2004-2-10 报告日期:2003-9-25 严重程度:高(远程代码执行) 受影响系统: Microsoft Windows NT 4.0 Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 描述: eEye Digital发现了Microsoft's ASN.1 库 (MSASN1.DLL)中第二个紧急漏洞,该漏洞允许攻击者在受影响的机器上覆盖堆数据,执行任意代码。ASN.1是使用在各种二进制协议上行业标准,该缺陷是在Microsoft执行时,通过大量Windows应用和服务的而被利用。该漏洞被利用是很严重的攻击,包括Kerberos (UDP/88)和NTLMv2验证(TCP/135, 139,445)。 注意:该漏洞的危险级别是紧急,Microsoft Windows NT 4.0,Microsoft Windows 2000,Microsoft Windows XP用户注意打补丁。补丁信息和相关链接如下: 相关链接: http://www.eeye.com/html/Products/Retina/index.html 补丁链接: http://www.microsoft.com/technet/security/bulletin/MS04-007.asp