Results 1 to 3 of 3

Thread: Windows DLL exploit

  1. #1
    XP + akbarri's Avatar
    Join Date
    Dec 2008
    Location
    Caterpillar Inc
    Posts
    938
    Blog Entries
    3

    Windows DLL exploit

    Windows DLL-loading security flaw puts Microsoft in a bind
    http://arstechnica.com/microsoft/new...-new-again.ars

    Windows DLL load hijacking exploits go wild
    http://www.computerworld.com/s/artic...ploits_go_wild

    Windows DLL bug hits dozens of apps
    http://news.cnet.com/8301-27080_3-20014625-245.html

    How you might exploit iTunes on Windows
    http://www.securityfocus.com/archive/1/513190

    Microsoft DLL Hijacking Exploit in Action (Video)
    http://www.offensive-security.com/of...oit-in-action/

    # OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind

  2. #2
    Certified SG Addict CableDude's Avatar
    Join Date
    Jun 2001
    Posts
    26,784

  3. #3
    XP + akbarri's Avatar
    Join Date
    Dec 2008
    Location
    Caterpillar Inc
    Posts
    938
    Blog Entries
    3
    Suggested Actions
    http://www.microsoft.com/technet/sec...y/2269637.mspx
    Advisory Details > Mitigating Factors and Suggested Actions > Workarounds

    Disable loading of libraries from WebDAV and remote network shares
    Microsoft Knowledge Base Article 2264107

    Disable the WebClient service
    To disable the WebClient Service, follow these steps:
    1. Click Start, click Run, type Services.msc and then click OK.
    2. Right-click WebClient service and select Properties.
    3. Change the Startup type to Disabled. If the service is running, click Stop.
    4. Click OK and exit the management application.

    Block TCP ports 139 and 445 at the firewall
    TCP and UDP Port Assignments
    or simply add 139 & 445 to ur Network Scanned Port @ AV/IS/Firewall Software

    # OS: Windows, Linux # Browser: Blink, Gecko, Presto, Webkit + Squid + Bind

Similar Threads

  1. Weird Problem
    By BaLa in forum Software Forum
    Replies: 11
    Last Post: 05-01-09, 06:56 PM
  2. "Windows 7 will run on Vista's recommended hardware"
    By Sava700 in forum Software Forum
    Replies: 3
    Last Post: 05-28-08, 06:54 AM
  3. Vista SP1 Due Feb4th!
    By Sava700 in forum Software Forum
    Replies: 53
    Last Post: 03-05-08, 06:42 PM
  4. Windows XP Service Pack 3 FAQ
    By Sava700 in forum Software Forum
    Replies: 17
    Last Post: 01-29-08, 09:44 AM
  5. Microsoft Vista SP1 RC Public Release
    By Sava700 in forum Software Forum
    Replies: 32
    Last Post: 12-16-07, 11:11 PM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •