Microsoft Workstation Service Heap Corruption Vulnerability
20 Aug. 2009
Summary
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Windows. Valid user credentials are required to exploit this vulnerability.
Vulnerable Systems:
* Microsoft Windows Server 2008
* Microsoft Windows Vista
* Microsoft Windows Server 2003
* Microsoft Windows XP SP3
The specific flaw exists in the Workstation RPC Service. When handling the arguments for the NetrGetJoinInformation function, memory is improperly freed and can lead to remote code execution. Successful exploitation can lead to a remote system compromise under SYSTEM credentials.