Microsoft Windows Knowledge Base Article 954211 update is not installed
| win-ms08kb954211-update (45544) |
Description:
Microsoft Knowledge Base Article 954211 is not installed, which could allow a remote attacker to exploit the following vulnerabilities:
The Microsoft Windows kernel could allow a local attacker to gain elevated privileges on the system, caused by improper validation of input passed from a parent window to a child when a new window is created. By executing a malicious application on the system, an attacker could exploit this vulnerability to execute arbitrary code with elevated privileges.
The Microsoft Windows kernel could allow a local attacker to gain elevated privileges on the system, caused by improper handling of system calls from multiple threads. By executing a malicious application on the system, an attacker could exploit this vulnerability to execute arbitrary code with elevated privileges.
The Microsoft Windows kernel could allow a local attacker to gain elevated privileges on the system, caused by improper validation of input passed from user mode to the kernel. By executing a malicious application on the system, an attacker could exploit this vulnerability to execute arbitrary code with elevated privileges.
Consequences:
Informational
Remedy:
Apply the appropriate patch for your system, as listed in Microsoft Security Bulletin MS08-061. See References.
References:
- IBM Internet Security Systems X-Force Database: Microsoft Windows kernel new window privilege escalation.
- IBM Internet Security Systems X-Force Database: Microsoft Windows kernel input privilege escalation.
- IBM Internet Security Systems X-Force Database: Microsoft Windows kernel system calls privilege escalation.
- Microsoft Security Bulletin MS08-061: Vulnerabilities in Windows Kernel Could Allow Elevation of Privilege (954211).
- CVE-2008-2250: The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate window properties sent from a parent window to a child window during creation of a new window, which allows local users to gain privileges via a crafted application, aka Windows Kernel Window Creation Vulnerability.
- CVE-2008-2251: Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that makes system calls within multiple threads, aka Windows Kernel Unhandled Exception Vulnerability. NOTE: according to Microsoft, this is not a duplicate of CVE-2008-4510.
- CVE-2008-2252: The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate parameters sent from user mode to the kernel, which allows local users to gain privileges via a crafted application, aka Windows Kernel Memory Corruption Vulnerability.
Platforms Affected:
- Microsoft Windows Server 2008 32-bit
- Microsoft Windows Server 2008 Itanium
- Microsoft Windows Server 2008 x64
- Microsoft Windows Vista x64
- Microsoft Windows Vista SP1
- Microsoft Windows Vista SP1 x64
- Microsoft Windows 2000 SP4
- Microsoft Windows 2003 Server x64
- Microsoft Windows 2003 Server SP1
- Microsoft Windows 2003 Server SP2
- Microsoft Windows 2003 Server SP2 Itanium
- Microsoft Windows 2003 Server SP2 x64
- Microsoft Windows 2003 Server SP1 Itanium
- Microsoft Windows Vista
- Microsoft Windows XP SP2
- Microsoft Windows XP SP3
- Microsoft Windows XP SP2 x64 Professional
- Microsoft Windows XP x64 Professional
Reported:
Not available
The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.
For corrections or additions please email xforce@iss.net
