Overview
Microsoft Windows fails to properly process IGMPv3 and MLDv2 network traffic. If exploited, this vulnerability may result in arbitrary code execution or a denial-of-service condition.
Description
Internet Group Management Protoco (IGMP) is the protocol used by IPv4 hosts to report their multicast group memberships to multicast routers. Version 3 (IGMPv3) adds support for source filtering. IGMP, IGMPv2 and IGMPv3 are specified in RFC 1112, RFC 2236, and RFC 3376. Multicast Listener Discovery (MLD) is a protocol used by IPv6 routers to discover the presence of nodes who can receive multicast packets. MLD version 2 (MLDv2) adds source address filtering capabilities. MLD and MLDv2 are specified in RFC 2710 and RFC 3810. |
Impact
A remote, unauthenticated attacker may be able to execute arbitrary code or cause a denial-of-service condition. If a vulnerable system is being used as a network firewall or router, clients relying on that system may also be affected. |
Solution
Update |
|
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://www.microsoft.com/technet/security/bulletin/ms08-001.mspx
- http://www.microsoft.com/technet/security/bulletin/ms08-001.mspx
- http://technet2.microsoft.com/windowsserver/en/library/3ccb6af5-d960-4a8d-b12b-70692dc47bf41033.mspx?mfr=true
- http://tools.ietf.org/html/rfc1112
- http://tools.ietf.org/html/rfc2236
- http://tools.ietf.org/html/rfc2710
- http://tools.ietf.org/html/rfc3376
- http://tools.ietf.org/html/rfc3810
- http://iptables-tutorial.frozentux.net/other/iptables.html
- http://www.freebsd.org/cgi/man.cgi?query=pf.conf&sektion=5
- http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/conf_gd.html
- http://en.wikipedia.org/wiki/IGMP
- http://en.wikipedia.org/wiki/MLD
Acknowledgements
Microsoft credits Alex Wheeler and Ryan Smith of IBM Internet Security Systems X-Force for reporting this vulenrabilty.
This document was written by Ryan Giobbi.
Other Information
CVE IDs: | CVE-2007-0069 |
Severity Metric: | 22.72 |
Date Public: | 2008-01-08 |
Date First Published: | 2008-01-10 |
Date Last Updated: | 2008-01-29 17:49 UTC |
Document Revision: | 51 |