Vulnerability Bulletins |
Vulnerabilidad en la verificación de Authenticode permite ejecución remota de código |
|
Vulnerability classification |
|
Property | Value |
Confidence level | Oficial |
Impact | Obtener acceso |
Dificulty | Experto |
Required attacker level | Acceso remoto sin cuenta a un servicio estandar |
System information |
|
Property | Value |
Affected manufacturer | Microsoft |
Affected software |
Microsoft Windows NT Workstation 4.0 Microsoft Windows NT Server 4.0 Microsoft Windows NT Server 4.0, Terminal Server Edition Microsoft Windows 2000 Service Pack 2 Microsoft Windows 2000 Service Pack 3, Service Pack 4 Microsoft Windows XP Gold Microsoft Windows XP 64-bit Edition Microsoft Windows XP 64-bit Edition Version 2003 Microsoft Windows Server 2003 Microsoft Windows Server 2003 64-bit Edition |
Description |
|
Se ha descubierto una vulnerabilidad en Authenticode por la que, bajo determinadas condiciones se podría instalar un control ActiveX sin petición de aprobación al usuario. | |
Solution |
|
Actualización de software Microsoft Windows NT Workstation 4.0 http://www.microsoft.com/downloads/details.aspx?FamilyId=921466F5-BC40-4E8E-BB57-6B81B57C21B6 Microsoft Windows NT Server 4.0 http://www.microsoft.com/downloads/details.aspx?FamilyId=21F64FF0-9175-42BE-A8E4-BDC59A98BDF2 Microsoft Windows NT Server 4.0, Terminal Server Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=C6688576-4682-4A30-BBD7-1817F2944890 Microsoft Windows 2000 Service Pack 2 http://www.microsoft.com/downloads/details.aspx?FamilyId=C862E049-58B2-4486-8D98-23183D7EE17D Microsoft Windows 2000 Service Pack 3, Service Pack 4 http://www.microsoft.com/downloads/details.aspx?FamilyId=90D27AEC-7D2A-45FD-B85A-E98E574338F1 Microsoft Windows XP Gold http://www.microsoft.com/downloads/details.aspx?FamilyId=6CDF5303-D767-4D68-9BA7-055E93E87847 Microsoft Windows XP 64-bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=D92EF2E8-C03A-43C0-B428-D76C4B669151 Microsoft Windows XP 64-bit Edition Version 2003 http://www.microsoft.com/downloads/details.aspx?FamilyId=4DFF5AAB-FA62-4B81-9C08-5C9FCB905E11 Microsoft Windows Server 2003 http://www.microsoft.com/downloads/details.aspx?FamilyId=135D8C00-7B4B-4C21-8EAA-D58814635E0D Microsoft Windows Server 2003 64-bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=4DFF5AAB-FA62-4B81-9C08-5C9FCB905E11 |
|
Standar resources |
|
Property | Value |
CVE | CAN-2003-0660 |
BID | |
Other resources |
|
Microsoft Security Bulletin MS03-041 http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS03-041.asp |
Version history |
||
Version | Comments | Date |
1.0 | Aviso emitido | 2003-10-16 |