CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / january, 2005 / Microsoft MFC ISAPI server extension denial of service vulnerability 

Microsoft MFC ISAPI server extension denial of service vulne

Microsoft MFC ISAPI server extension denial of service vulne

Date Discovered: July 11, 2002
Date Published: December 31, 2004
Last Updated: December 31, 2004

Vulnerability ID: 32171
Discovered by: Microsoft
Exploitable Locally: No
Exploitable Remotely: Yes
Impact: Remote attackers can cause a denial of service.
Root Cause: Software Vulnerability


Microsoft ISAPI server extensions built using MFC are vulnerable to a denial of service. The vulnerability is due to the way MFC handles certain types of data received via the POST method. Remote attackers can exploit this vulnerability to cause a denial of service.



Recommendations

Technical Recommendation Reference - 32171
Upgrade to Visual C++ 6.0 Service Pack 6 or later.


Vendor site:

www.microsoft.com


Affected Technologies

Microsoft: Visual C++ Enterprise Edition 6.0


More information on CA Virus Information Center:
http://www3.ca.com/securityadvisor/vulninfo/vuln.aspx?id=32171

Computer Associates – the Trusted Source of Security Knowledge






Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel