vendor:
Windows WLAN AutoConfig
by:
Jeremy Brown
7,8
CVSS
HIGH
Buffer Overrun
119
CWE
Product Name: Windows WLAN AutoConfig
Affected Version From: Windows 10 x86/x64 BUILD 10.0.14393
Affected Version To: Windows Server 2012 R2 x64
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 10 x86/x64, Windows Server 2012 R2 x64
2016
Windows WLAN AutoConfig Named Pipe POC
This exploit is a proof-of-concept for a buffer overrun vulnerability in Windows WLAN AutoConfig Named Pipe. The vulnerability is caused by a stack buffer overrun in the svchost.exe process, which can be triggered by writing a large amount of data to the WiFiNetworkManagerTask pipe. This exploit will not kill the Wlansvc service, but the thread servicing the pipe will terminate.
Mitigation:
Ensure that all Windows systems are up-to-date with the latest security patches.