vendor:
Windows
by:
john.b.hale@gmai.com
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Windows
Affected Version From: Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10, Windows Server 2016
Affected Version To: Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, Windows 10, Windows Server 2016
Patch Exists: YES
Related CWE: CVE-2015-1635
CPE: o:microsoft:windows
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=82828, https://www.infosecmatter.com/nmap-nse-library/?nse=http-vuln-cve2015-1635, https://www.infosecmatter.com/metasploit-module-library/?mm=auxiliary/dos/http/ms15_034_ulonglongadd, https://www.infosecmatter.com/metasploit-module-library/?mm=auxiliary/scanner/http/ms15_034_http_sys_memory_dump, https://www.infosecmatter.com/nmap-nse-library/?nse=http-vuln-cve2015-1427, https://www.infosecmatter.com/metasploit-auxiliary-modules-detailed-spreadsheet/, https://www.infosecmatter.com/nessus-plugin-library/?id=89902, https://www.infosecmatter.com/nessus-plugin-library/?id=89775, https://www.infosecmatter.com/nessus-plugin-library/?id=77455, https://www.infosecmatter.com/nessus-plugin-library/?id=89912
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2015
MS15-034 Checker
MS15-034 is a buffer overflow vulnerability in Microsoft Windows HTTP.sys which allows remote code execution. The vulnerability is caused by improper validation of the Range header in HTTP requests. An attacker can send a specially crafted HTTP request containing an overly long Range header to trigger a buffer overflow and execute arbitrary code.
Mitigation:
Microsoft released a patch for this vulnerability in April 2015.