Sploitus

Exploit for Microsoft Message Queuing buffer overflow

saint · 2006-10-06

Exploit Code

MARKDOWN32 lines
## https://sploitus.com/exploit?id=SAINT:8BA743AF3B0E6D9F7F67C9DC5E8269D1
Added: 10/06/2006  
CVE: [CVE-2005-0059](<https://vulners.com/cve/CVE-2005-0059>)  
BID: [13112](<http://www.securityfocus.com/bid/13112>)  
OSVDB: [15458](<http://www.osvdb.org/15458>)  


### Background

Microsoft [Message Queuing](<http://www.microsoft.com/windowsserver2003/technologies/msmq/default.mspx>) allows applications which may be running at different times to communicate across a network. 

### Problem

A buffer overflow in Microsoft Message Queuing allows remote attackers to execute arbitrary commands. 

### Resolution

Apply the update referenced in [Microsoft Security Bulletin 05-017](<http://www.microsoft.com/technet/security/bulletin/ms05-017.mspx>). 

### References

<http://www.microsoft.com/technet/security/bulletin/ms05-017.mspx>  


### Limitations

Exploit works on Windows 2000 and Windows XP SP0 and SP1. 

### Platforms

Windows 2000  
Windows XP