[<prev] [next>] [day] [month] [year] [list]
Message-ID: <425e23e354e147.95199285@rootshell.be>
Date: Thu Apr 14 09:04:07 2005
From: monu at rootshell.be (monu@...tshell.be)
Subject: iDEFENSE Security Advisory 04.12.05:
Microsoft Windows CSRSS.EXE Stack Overflow Vulnerability
Hello,
Beside the buffer overflow vulnerability, a DoS vulnerability is motioned as a result of a CONSOLE_STATE_INFO struct containing all zero's (divide-by-zero).
Is this vulnerability also fixed MS05-018? MS05-018 doesn't say a word about it.
Thanks in advance,
-Monu
[This mail has been send from http://www.rootshell.be.]
Powered by blists - more mailing lists