Executive Summary

Informations
NameMS06-025First vendor Publication0000-00-00
VendorMicrosoftLast vendor Modification0000-00-00
Severity (Vendor) N/ARevisionN/A

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score7.5Attack RangeNetwork
Cvss Impact Score6.4Attack ComplexityLow
Cvss Expoit Score10AuthentificationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

Vulnerability in Routing and Remote Access Could Allow Remote Code Execution (911280)

Original Source

Url : http://technet.microsoft.com/en-us/security/bulletin/MS06-025

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:2061
 
Oval ID: oval:org.mitre.oval:def:2061
Title: RRAS Memory Corruption Vulnerability (WinXP,SP1)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 5
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1936
 
Oval ID: oval:org.mitre.oval:def:1936
Title: RRAS Memory Corruption Vulnerability (S03,SP1)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 5
Platform(s): Microsoft Windows Server 2003
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1823
 
Oval ID: oval:org.mitre.oval:def:1823
Title: RRAS Memory Corruption Vulnerability (WinXP,SP2)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 6
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1741
 
Oval ID: oval:org.mitre.oval:def:1741
Title: RRAS Memory Corruption Vulnerability (Win2K)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 6
Platform(s): Microsoft Windows 2000
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1720
 
Oval ID: oval:org.mitre.oval:def:1720
Title: RRAS Memory Corruption Vulnerability (WinS03)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 6
Platform(s): Microsoft Windows Server 2003
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1587
 
Oval ID: oval:org.mitre.oval:def:1587
Title: RRAS Memory Corruption Vulnerability (64-bit XP)
Description: Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2370
Version: 5
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1983
 
Oval ID: oval:org.mitre.oval:def:1983
Title: RASMAN Registry Corruption Vulnerability (WinS03)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 6
Platform(s): Microsoft Windows Server 2003
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1907
 
Oval ID: oval:org.mitre.oval:def:1907
Title: RASMAN Registry Corruption Vulnerability (XP,SP1)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 5
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1857
 
Oval ID: oval:org.mitre.oval:def:1857
Title: RASMAN Registry Corruption Vulnerability (Win2K)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 6
Platform(s): Microsoft Windows 2000
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1851
 
Oval ID: oval:org.mitre.oval:def:1851
Title: RASMAN Registry Corruption Vulnerability (S03,SP1)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 5
Platform(s): Microsoft Windows Server 2003
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1846
 
Oval ID: oval:org.mitre.oval:def:1846
Title: RASMAN Registry Corruption Vulnerability (XP,SP2)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 6
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:1674
 
Oval ID: oval:org.mitre.oval:def:1674
Title: RASMAN Registry Corruption Vulnerability (64-bit XP)
Description: Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Family: windows Class: vulnerability
Reference(s): CVE-2006-2371
Version: 5
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Os20
Os15
Os9

SAINT Exploits

DescriptionLink
Windows RRAS memory corruption vulnerabilityMore info here
Windows RASMAN registry corruption vulnerabilityMore info here

ExploitDB Exploits

idDescription
2010-08-25Microsoft RRAS Service RASMAN Registry Overflow
2010-05-09Microsoft RRAS Service Overflow
2006-06-29MS Windows RRAS RASMAN Registry Stack Overflow Exploit (MS06-025)
2006-06-22MS Windows RRAS Remote Stack Overflow Exploit (MS06-025)

Open Source Vulnerability Database (OSVDB)

idDescription
26437Microsoft Windows RRAS RASMAN Remote Overflow
26436Microsoft Windows RASMAN RPC Request Remote Overflow

Metasploit Database

idDescription
2006-06-13 Microsoft RRAS Service RASMAN Registry Overflow
2006-06-13 Microsoft RRAS Service Overflow

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
DateInformations
2013-06-11 17:26:01
  • Multiple Updates
2013-06-11 13:26:21
  • Multiple Updates
2013-06-10 13:26:16
  • Multiple Updates
2013-06-10 09:26:08
  • Multiple Updates
2013-06-08 05:27:25
  • Multiple Updates
2013-06-07 21:25:52
  • Multiple Updates
2013-06-06 13:26:42
  • Multiple Updates
2013-06-06 05:25:17
  • Multiple Updates
2013-06-04 17:26:48
  • Multiple Updates
2013-06-04 13:25:57
  • Multiple Updates
2013-06-03 21:28:22
  • Multiple Updates
2013-06-03 17:22:29
  • Multiple Updates
2013-06-03 13:26:44
  • Multiple Updates
2013-06-03 05:22:54
  • Multiple Updates
2013-05-31 21:26:39
  • Multiple Updates
2013-05-31 17:22:30
  • Multiple Updates
2013-05-30 17:25:25
  • Multiple Updates
2013-05-30 13:22:33
  • Multiple Updates
2013-05-01 17:22:45
  • Multiple Updates
2013-05-01 13:28:15
  • Multiple Updates
2013-05-01 09:22:53
  • Multiple Updates
2013-05-01 05:38:37
  • Multiple Updates