>> Microsoft Windows Vista "WRITE_ANDX" Denial of Service (MS09-001)
Title : Microsoft Windows Vista "WRITE_ANDX" Denial of Service (MS09-001) VUPEN ID : VUPEN/ADV-2008-2583 CVE ID : CVE-2008-4114 CWE ID : CWE-20
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-09-16
Technical Description
A vulnerability has been identified in Microsoft Windows Vista, which could be exploited by remote attackers to cause a denial of service. This issue is caused by an error within the "srv.sys" driver when processing malformed "WRITE_ANDX" SMB packets, which could be exploited by remote unauthenticated attackers to crash an affected system by sending malformed packets to an interface allowing NULL Sessions (e.g. "\LSARPC" on Windows Vista).