Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Remote Code Execution Via HTTP Request In IIS On Windows
Mattias website ^ | Wednesday, April 15, 2015 | Mattias Geniar

Posted on 04/15/2015 7:33:51 PM PDT by Utilizer

A remote code execution vulnerability exists in the HTTP protocol stack (HTTP.sys) that is caused when HTTP.sys improperly parses specially crafted HTTP requests. An attacker who successfully exploited this vulnerability could execute arbitrary code in the context of the System account.

To exploit this vulnerability, an attacker would have to send a specially crafted HTTP request to the affected system. The update addresses the vulnerability by modifying how the Windows HTTP stack handles requests.

(Excerpt) Read more at ma.ttias.be ...


TOPICS: Computers/Internet
KEYWORDS: http; microsoft; mswindows; security; windows; windowspinglist
Navigation: use the links below to view more comments.
first 1-2021-31 next last
Much more details including code snippets at website.
1 posted on 04/15/2015 7:33:51 PM PDT by Utilizer
[ Post Reply | Private Reply | View Replies]

To: Utilizer

“one of the fly rods has gone out of skew on the treadle”


2 posted on 04/15/2015 7:34:41 PM PDT by ClearCase_guy ("Victim" -- some people eagerly take on the label because of the many advantages that come with it.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ClearCase_guy

And John has a long mustache.


3 posted on 04/15/2015 8:03:51 PM PDT by Scrambler Bob (an icon of resistance within the oppressed patriots, who represent resilience in the face of SSV)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Scrambler Bob

Shoot the moon!


4 posted on 04/15/2015 8:15:45 PM PDT by Utilizer (Bacon A'kbar! - In world today are only peaceful people, and the muzlims trying to kill them)
[ Post Reply | Private Reply | To 3 | View Replies]

To: Utilizer

People still use IIS to serve sites?


5 posted on 04/15/2015 8:16:56 PM PDT by some tech guy (Stop trying to help, Obama)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer

Hey here’s some data, let’s execute it!


6 posted on 04/15/2015 8:21:02 PM PDT by Ray76 (Obama says, "Unlike my mum, Ruth has all the documents needed to prove who Mark's father was.")
[ Post Reply | Private Reply | To 1 | View Replies]

To: some tech guy

Apparently so, it would seem.


7 posted on 04/15/2015 8:28:19 PM PDT by Utilizer (Bacon A'kbar! - In world today are only peaceful people, and the muzlims trying to kill them)
[ Post Reply | Private Reply | To 5 | View Replies]

To: some tech guy

https://en.wikipedia.org/wiki/Internet_Information_Services
Internet Information Services
Wikipedia
“IIS 8.5 is included in Windows Server 2012 R2 and Windows 8.1.”


8 posted on 04/15/2015 8:41:00 PM PDT by familyop (We Baby Boomers are croaking in an avalanche of corruption smelled around the planet.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: patro

9 posted on 04/15/2015 8:51:12 PM PDT by patro
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer

IMPORTANT: This vulnerability is in all Windows 7 and Windows 8 systems, not just IIS servers.

“This security update is rated Critical for all supported editions of Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows 8.1, and Windows Server 2012 R2.”

Microsoft Security Bulletin MS15-034 - Critical

https://technet.microsoft.com/library/security/ms15-034

It is for home computers, too. Not just servers.


10 posted on 04/15/2015 8:51:54 PM PDT by PastorBooks
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer

More information:

Remote Kernel Code Execution Via HTTP Request In IIS On Windows | Hacker News
https://news.ycombinator.com/item?id=9380468

Remote Code Execution Via HTTP Request In IIS On Windows
https://ma.ttias.be/remote-code-execution-via-http-request-in-iis-on-windows

MS15-034 Test
https://lab.xpaw.me/MS15-034/?host=bing.com


11 posted on 04/15/2015 8:54:16 PM PDT by PastorBooks
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer; Abby4116; afraidfortherepublic; aft_lizard; AF_Blue; Alas Babylon!; amigatec; ...
Windows Server IIS vulnerability ... PING!

You can find all the Windows Ping list threads with FR search: search on keyword "windowspinglist".

Of interest to the System Admins on the ping list, but ALSO to anyone running web services on Win 7 or Win 8...

12 posted on 04/15/2015 8:55:15 PM PDT by dayglored (Listen, strange women lying in ponds distributing swords is...sounding pretty good about now.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Utilizer

Oh, well, it’s all part of the monthly patch cycle. Remote code execution with SYSTEM account privileges is not something you’d want to let hang around. Should have about 250 servers patched by Friday night. It’s what I do.


13 posted on 04/15/2015 8:57:47 PM PDT by Billthedrill
[ Post Reply | Private Reply | To 1 | View Replies]

To: some tech guy

Lots of app servers still use it.


14 posted on 04/15/2015 9:02:33 PM PDT by miliantnutcase
[ Post Reply | Private Reply | To 5 | View Replies]

To: miliantnutcase

I love linux mint, best OS ever


15 posted on 04/15/2015 9:10:24 PM PDT by bicyclerepair (Ft. Lauderdale FL (zombie land). TERM LIMITS ... TERM LIMITS)
[ Post Reply | Private Reply | To 14 | View Replies]

To: bicyclerepair

I think you posted on the wrong thread, mate.

That, or you need to put down the container of Golden Nectar you have been partaking of a bit more than you should have tonight. :)


16 posted on 04/15/2015 9:13:30 PM PDT by Utilizer (Bacon A'kbar! - In world today are only peaceful people, and the muzlims trying to kill them)
[ Post Reply | Private Reply | To 15 | View Replies]

To: some tech guy

Recent:

Apple Safari contains a vulnerability that could allow an unauthenticated, remote attacker to conduct remote code execution on the affected system. Updates are available.

A Critical remotely exploitable vulnerability has been discovered in the widely used Linux and Unix command-line shell, known as Bash, aka the GNU Bourne Again Shell, leaving countless websites, servers, PCs, OS X Macs, various home routers, and many more open to the cyber criminals.

Microsoft just seems to get more love. :)


17 posted on 04/15/2015 9:28:18 PM PDT by Ingtar (Capitulation is the enemy of Liberty, or so the recent past has shown.)
[ Post Reply | Private Reply | To 5 | View Replies]

To: Ingtar
Microsoft just seems to get more love. :)

Especially by the unwashed Leftie masses.

I've never really figured that out, except that they think Steve Jobs is cool for some reason.
18 posted on 04/15/2015 9:31:53 PM PDT by SoConPubbie (Mitt and Obama: They're the same poison, just a different potency)
[ Post Reply | Private Reply | To 17 | View Replies]

To: SoConPubbie

I think it’s that Rainbow Flag Apple icon, actually. *grin*


19 posted on 04/15/2015 9:45:18 PM PDT by Utilizer (Bacon A'kbar! - In world today are only peaceful people, and the muzlims trying to kill them)
[ Post Reply | Private Reply | To 18 | View Replies]

To: dayglored
Windows Server IIS vulnerability

My Win7 computer ate 16 updates from MS today. Took forever, too! Is it possible this patch was included?

20 posted on 04/15/2015 10:28:42 PM PDT by Windflier (To anger a conservative, tell him a lie. To anger a liberal, tell him the truth.)
[ Post Reply | Private Reply | To 12 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-31 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson