PT-2012-3596 · Microsoft · Windows Xp+1
Published
2012-08-15
·
Updated
2018-10-12
·
CVE-2012-1852
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows XP versions SP2 through SP3
Description
A heap-based buffer overflow issue exists in the Remote Administration Protocol (RAP) implementation, allowing remote attackers to execute arbitrary code via crafted RAP response packets. This issue enables an attacker to run arbitrary code on the target system, potentially leading to the installation of programs, viewing, changing, or deleting data, or creating new accounts with full user rights.
Recommendations
For Microsoft Windows XP versions SP2 through SP3, apply the necessary patch to fix the Remote Administration Protocol Heap Overflow issue.
As a temporary workaround, consider restricting access to the LanmanWorkstation service until a patch is available.
Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows Xp