<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
><channel><title>M32 Security &#187; vulnerability</title> <atom:link href="http://m32consulting.com/tag/vulnerability/feed/" rel="self" type="application/rss+xml" /><link>http://m32consulting.com</link> <description>Network Security Info, News, and Resources</description> <lastBuildDate>Fri, 30 Jul 2010 04:55:42 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <item><title>Critical Microsoft Vista/2008/Windows 7 Zero-day Remote BSOD Found</title><link>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/</link> <comments>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/#comments</comments> <pubDate>Wed, 09 Sep 2009 00:24:06 +0000</pubDate> <dc:creator>Kyle</dc:creator> <category><![CDATA[Corporate]]></category> <category><![CDATA[Security]]></category> <category><![CDATA[Software]]></category> <category><![CDATA[ampersand]]></category> <category><![CDATA[attack]]></category> <category><![CDATA[attacker]]></category> <category><![CDATA[blue screen of death]]></category> <category><![CDATA[BSOD]]></category> <category><![CDATA[Laurent Gaffié]]></category> <category><![CDATA[microsoft]]></category> <category><![CDATA[microsoft vista]]></category> <category><![CDATA[microsoft windows vista]]></category> <category><![CDATA[OOB]]></category> <category><![CDATA[process id]]></category> <category><![CDATA[proof of concept]]></category> <category><![CDATA[SMB]]></category> <category><![CDATA[throwback]]></category> <category><![CDATA[versions of windows vista]]></category> <category><![CDATA[vulnerability]]></category> <category><![CDATA[zero day]]></category><guid
isPermaLink="false">http://m32consulting.com/?p=41</guid> <description><![CDATA[Remember back in the days of Windows 95 when someone could use the OOB attack to remotely BSOD a PC? Well now you can relive your youth with a classic throwback from Microsoft! Windows Vista, 2008, and 2007 of all variants all have a similar vulnerability that allows a remote attacker take your machine down [...]]]></description> <content:encoded><![CDATA[<p>Remember back in the days of Windows 95 when someone could use the OOB attack to remotely BSOD a PC? Well now you can relive your youth with a classic throwback from Microsoft! Windows Vista, 2008, and 2007 of all variants all have a similar vulnerability that allows a remote attacker take your machine down with a simple ampersand. Leave it up to Microsoft to do it all again more than a decade later.</p><p>The SMB 2.0 driver in x86 and x64 versions of Windows Vista, Server 2008, and Windows 7 are all one in the same. When sent the &#8220;&amp;&#8221; character in the &#8220;Process ID High&#8221; SMB header, the process pagefaults and brings us the beloved Blue Screen of Death we&#8217;ve all come to know and love.</p><p><a
href="http://g-laurent.blogspot.com/2009/09/windows-vista7-smb20-negotiate-protocol.html" target="_blank">Credit goes to Laurent Gaffié and you can find the Proof-of-Concept on his blog.</a></p> ]]></content:encoded> <wfw:commentRss>http://m32consulting.com/2009/09/critical-microsoft-vista2008windows-7-zero-day-remote-bsod-found/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using disk
Page Caching using disk (enhanced)
Database Caching 1/9 queries in 0.023 seconds using disk
Object Caching 464/486 objects using disk

Served from: m32consulting.com @ 2010-07-30 09:13:57 -->