Short Name |
LDAP:LSASS-HEAP-OF |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
LDAP |
Keywords |
LSASS Heap Overflow Vulnerability |
Release Date |
2010/09/13 |
Update Number |
1771 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in the implementation of the LDAP protocol Microsoft uses for Domain control. A malformed LDAP request can result in remote code execution.
Microsoft Windows Local Security Authority Subsystem Service (LSASS) is prone to a privilege-escalation vulnerability. This issue occurs in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (ADLDS). An attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will facilitate in the complete compromise of affected computers.