Jump to content
  • entries
    47
  • comments
    3
  • views
    26257

Microsoft DNS Server NAPTR Code Execution Vulnerability


Ioannis Zontos

733 views

 Share

Severity: High
Summary:

· This vulnerability affects: The DNS service that ships with the Server versions of Windows

· How an attacker exploits it: By sending specially crafted DNS queries

· Impact: In the worst case, an attacker gains complete control of your DNS server

· What to do: Deploy the appropriate Windows  update immediately, or let Windows Automatic Update do it for you

Exposure:

The Server versions of Windows ships with a DNS Server to allow administrators to offer Domain Name System services on their networks.

In a security bulletin released today as part of Patch Day, Microsoft describes two vulnerabilities that affects the DNS Server that ships with Server versions of Windows. While this is technically a Windows flaw, which we typically include in a combined Windows alert, we feel that it deserves individual attention due to its high severity.

The worst of the two issues is a remote code execution flaw involving the way the DNS server handles specially crafted Naming Authority Pointer (NAPTR) DNS resource records (RR). By sending a specially crafted NAPTR query to your DNS server, and attacker could exploit this vulnerability to gain complete control of your server. However, the attacker would have to own the malicious domain name, and the authoritative DNS server for that domain name, in order for this attack to succeed. Despite this slight mitigating factor, the DNS server vulnerability poses a serious risk to your network. You should patch your Microsoft DNS servers immediately.

The DNS Server also suffers from a less serious  Denial of Service (DoS) flaw, which an attacker could exploit to cause your DNS server to stop responding. If an attacker can prevent your users from accessing DNS services, they essentially prevent access to the Internet (by making it difficult for users to find resources by name).

Solution Path:

Download, test, and deploy the appropriate DNS server patches immediately, or let Windows Automatic Update do it for you.

· For Windows Server 2003 (w/SP2)

· For Windows Server 2003 x64 (w/SP2)

· For Windows Server 2003 Itanium (w/SP2)

· For Windows Server 2008 (w/SP2)

· For Windows Server 2008 x64 (w/SP2)

· For Windows Server R2 2008 Itanium

Status:

Microsoft has released patches to fix this vulnerability

References:

· MS Security Bulletin MS11-058

 Share

0 Comments


Recommended Comments

There are no comments to display.

Guest
Add a comment...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...