Saturday, November 14, 2009

SMB zero day affecting Win 2K3, XP, Vista, 7, and 2K8

Laurent Gaffie, a security researcher identified a DoS vulnerability affecting SMB protocol. This is basically a DoS vulnerability, it causes the target machine to freeze and unresponsive. Reboot is the only way to recover from this. Read more about this from his blog.

Microsoft came up with an advisory, the advisory states the workaround as blocking port TCP 139 and TCP 445 at the perimeter Firewalls. Microsoft also confirmed that this vulnerability cannot be used to take control or install malicious software.

SANS handlers also tested this vulnerability, read about it here

No comments: