MS06-040: Server Service

Published: 2006-08-08
Last Updated: 2006-08-08 18:19:57 UTC
by Swa Frantzen (Version: 1)
MS06-040 - KB921883


This fixes a buffer overrun in the server service in Windows that allows for remote code execution.

The suggested workaround is to block port 139/tcp and 445/tcp with a firewall.

This sounds like it could be developed into a worm or used as a second stage once it's behind a corporate fireewall.


