|
|
|
![]() |
Vulnerability Note VU#238064Microsoft Remote Installation Service Writable Path VulnerabilityOverviewA vulnerability in the way Microsoft Remote Installation Service handles TFTP may allow a remote, unauthorized attacker to create or overwrite arbitrary operating system files.I. DescriptionMicrosoft Remote Installation Service contains a vulnerability in the way that it provides TFTP access. According to Microsoft Security Bulletin ms06-077:The vulnerability is caused by allowing anonymous access to the file structure of a hosted operating system build through the RIS TFTP service. II. ImpactA remote, unauthenticated attacker may be able to create or overwrite operating system files hosted on the Microsoft Remote Installation Service server, allowing for the insertion of backdoors or other malicious code. As a result, any system subsequently managed by, or installed from the vulnerable Remote Installation Server would be fully compromised.III. SolutionUpdateMicrosoft has released an update to address this issue. See Microsoft Security Bulletin ms06-077 for more details.
See Microsoft Security Bulletin ms06-077 for more details. Systems Affected
References
This vulnerability was reported in Microsoft Security Bulletin ms06-077. Microsoft credits Nicolas Ruff for reporting this issue. This document was written by Chris Taschner.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||