Vulnerabilities > CVE-2009-1139 - Resource Management Errors vulnerability in Microsoft Adam, Windows 2000 and Windows Server 2003
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
COMPLETE Summary
Memory leak in the LDAP service in Active Directory on Microsoft Windows 2000 SP4 and Server 2003 SP2, and Active Directory Application Mode (ADAM) on Windows XP SP2 and SP3 and Server 2003 SP2, allows remote attackers to cause a denial of service (memory consumption and service outage) via (1) LDAP or (2) LDAPS requests with unspecified OID filters, aka "Active Directory Memory Leak Vulnerability."
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 | |
OS | 9 |
Common Weakness Enumeration (CWE)
Msbulletin
bulletin_id | MS09-018 |
bulletin_url | |
date | 2009-06-09T00:00:00 |
impact | Remote Code Execution |
knowledgebase_id | 971055 |
knowledgebase_url | |
severity | Critical |
title | Vulnerabilities in Active Directory Could Allow Remote Code Execution |
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS09-018.NASL |
description | The version of Microsoft Active Directory / Active Directory Application Mode installed on the remote host is affected by one or both of the following vulnerabilities : - A flaw involving the way memory is freed when handling specially crafted LDAP or LDAPS requests allows a remote attacker to execute arbitrary code on the remote host with administrator privileges. Note that this is only known to affect Active Directory on Microsoft Windows 2000 Server Service Pack 4. (CVE-2009-1138) - Improper memory management during execution of certain types of LDAP or LDAPS requests may cause the affected product to stop responding. (CVE-2009-1139) |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 39340 |
published | 2009-06-10 |
reporter | This script is Copyright (C) 2009-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/39340 |
title | MS09-018: Vulnerabilities in Active Directory Could Allow Remote Code Execution (971055) |
Oval
accepted | 2014-04-07T04:06:55.913-04:00 | ||||||||||||||||||||||||
class | vulnerability | ||||||||||||||||||||||||
contributors |
| ||||||||||||||||||||||||
definition_extensions |
| ||||||||||||||||||||||||
description | Memory leak in the LDAP service in Active Directory on Microsoft Windows 2000 SP4 and Server 2003 SP2, and Active Directory Application Mode (ADAM) on Windows XP SP2 and SP3 and Server 2003 SP2, allows remote attackers to cause a denial of service (memory consumption and service outage) via (1) LDAP or (2) LDAPS requests with unspecified OID filters, aka "Active Directory Memory Leak Vulnerability." | ||||||||||||||||||||||||
family | windows | ||||||||||||||||||||||||
id | oval:org.mitre.oval:def:6253 | ||||||||||||||||||||||||
status | accepted | ||||||||||||||||||||||||
submitted | 2009-06-09T14:00:00 | ||||||||||||||||||||||||
title | Active Directory Memory Leak Vulnerability | ||||||||||||||||||||||||
version | 76 |
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 35225 CVE(CAN) ID: CVE-2009-1139 Microsoft Windows是微软发布的非常流行的操作系统。 LDAP服务在执行包含特定OID过滤器的LDAP或LDAPS请求时没有正确地管理内存。远程攻击者可以通过向Active Directory或ADAM服务器发送特制的LDAP或LDAPS报文触发内存破坏,导致受影响的系统停止接受请求。对于Windows 2000 Server,任何可以访问目标网络的匿名用户均可以向受影响的系统传递特制网络报文来利用此漏洞;在Server 2003或安装了ADAM的系统上,攻击者必须具有有效的认证凭据才能利用此漏洞。 Microsoft Windows XP SP3 Microsoft Windows XP SP2 Microsoft Windows Server 2003 SP2 Microsoft Windows 2000SP4 临时解决方法: * 在防火墙阻断TCP 389、636、3268和3269端口。 * 在Windows 2000服务器上禁止匿名LDAP访问。 厂商补丁: Microsoft --------- Microsoft已经为此发布了一个安全公告(MS09-018)以及相应补丁: MS09-018:Vulnerabilities in Active Directory Could Allow Remote Code Execution (971055) 链接:<a href="http://www.microsoft.com/technet/security/Bulletin/MS09-018.mspx?pf=true" target="_blank" rel=external nofollow>http://www.microsoft.com/technet/security/Bulletin/MS09-018.mspx?pf=true</a> |
id | SSV:11587 |
last seen | 2017-11-19 |
modified | 2009-06-11 |
published | 2009-06-11 |
reporter | Root |
title | Microsoft活动目录服务内存泄漏漏洞(MS09-018) |
References
- http://osvdb.org/54938
- http://secunia.com/advisories/35355
- http://support.avaya.com/elmodocs2/security/ASA-2009-214.htm
- http://www.securityfocus.com/bid/35225
- http://www.securitytracker.com/id?1022349
- http://www.us-cert.gov/cas/techalerts/TA09-160A.html
- http://www.vupen.com/english/advisories/2009/1537
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-018
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6253