漏洞信息详情
Microsoft Internet Explorer winhlp32.exe服务远程代码执行漏洞
漏洞简介
Internet Explorer是Windows操作系统中默认捆绑的web浏览器。
Microsoft Internet Explorer支持使用VBScript,多个VBScript命令允许指定HelpFile参数,如MsgBox函数,这个参数指向本地文件系统的某个文件或远程应用通过windows文件共享的文件。当F1按下去的时候,Internet Explorer会启动Windows帮助(winhlp32.exe)并显示指定的上下文敏感的帮助文件。由于windows帮助文件.HLP是不安全文件,可被利用执行任意代码。
漏洞公告
目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:
http://technet.microsoft.com/en-us/security/bulletin/MS10-022
参考网址
来源:SECTRACK
链接:http://securitytracker.com/id?1023668
来源:CONFIRM
链接:http://blogs.technet.com/srd/archive/2010/03/01/help-keypress-vulnerability-in-vbscript-enabling-remote-code-execution.aspx
来源:CONFIRM
链接:http://blogs.technet.com/msrc/archive/2010/02/28/investigating-a-new-win32hlp-and-internet-explorer-issue.aspx
来源:BID
链接:http://www.securityfocus.com/bid/38463
来源:MISC
链接:http://www.theregister.co.uk/2010/03/01/ie_code_execution_bug/
来源:MISC
链接:https://www.metasploit.com/svn/framework3/trunk/modules/exploits/windows/browser/ie_winhlp32.rb
来源:CERT
链接:http://www.us-cert.gov/cas/techalerts/TA10-103A.html
来源:CERT-VN
链接:http://www.kb.cert.org/vuls/id/612021
来源:VUPEN
链接:http://www.vupen.com/english/advisories/2010/0485
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7170
来源:MISC
链接:http://isec.pl/vulnerabilities10.html
来源:SECUNIA
链接:http://secunia.com/advisories/38727
来源:OSVDB
链接:http://www.osvdb.org/62632
来源:XF
链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/56558
来源:MISC
链接:http://isec.pl/vulnerabilities/isec-0027-msgbox-helpfile-ie.txt
来源:CONFIRM
链接:http://blogs.technet.com/msrc/archive/2010/03/01/security-advisory-981169-released.aspx
来源:MISC
链接:http://www.computerworld.com/s/article/9163298/New_zero_day_involves_IE_puts_Windows_XP_users_at_risk
来源:MS
链接:https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-022
来源:OVAL
链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8654
来源:CONFIRM
链接:http://www.microsoft.com/technet/security/advisory/981169.mspx
受影响实体
- Microsoft Windows_2003_server:Sp2:Itanium<!--2000-1-1-->
- Microsoft Windows_2003_server:Sp2<!--2000-1-1-->
- Microsoft Windows_server_2003:Sp2:X64<!--2000-1-1-->
- Microsoft Windows_xp:-:Sp2:X64<!--2000-1-1-->
- Microsoft Windows_xp:Sp3<!--2000-1-1-->
补丁
- Security Update for Windows 2000 (KB981349)<!--2010-4-12-->
- Security Update for Windows XP x64 Edition (KB981350)<!--2010-4-12-->
- Security Update for Windows Server 2003 (KB981349)<!--2010-4-12-->
- Security Update for Windows Server 2003 x64 Edition (KB981332)<!--2010-4-12-->
- Security Update for Windows Vista (KB981332)<!--2010-4-12-->
还没有评论,来说两句吧...