Subscribe to Windows IT Pro
February 27, 2001 12:00 AM

Windows 2000 Event Viewer Contains Unchecked Buffer

Windows IT Pro
InstantDoc ID #20120
Rating: (0)

Reported February 26, 2001, by Microsoft.

VERSIONS AFFECTED
  • Windows 2000

DESCRIPTION

A buffer overflow has been discovered in the Event Viewer of Microsoft Windows 2000 OSs. The problem can let an attacker cause arbitrary code to execute on the OS in the security context of the user viewing a particular malformed event log entry. The problem is compounded by the fact that unprivileged processes can write events into the Application and System logs.

VENDOR RESPONSE

Microsoft has released a security bulletin, MS01-013, and a patch to address the issue.

CREDIT
Discovered by Blake Watts at Guardent.

Related Content:

ARTICLE TOOLS

Comments
    There are no comments to display. Be the first one!
You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.