RULE(RULE ID:708495)

Rule General Information
Release Date: 2010-03-09
Rule Name: Microsoft Client Service for Netware Memory Corruption Vulnerability -1 (CVE-2006-4688)
Severity:
CVE ID:
Rule Protection Details
Description: Buffer overflow in Client Service for NetWare (CSNW) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via crafted messages, aka "Client Service for NetWare Memory Corruption Vulnerability."
Impact: An attacker can execute arbitrary code in the context of the vulnerable system. Failed exploit may cause denial-of-service attack.
Affected OS: Network Device, Solaris, FreeBSD, Windows, Other Unix, Linux
Reference: MicrosoftSecurityBulletin:ms06-066
SecurityFocusBID:21023
Solutions
Microsoft has released a patch MS06-066 to eliminate the vulnerability. The patch can be downloaded at http://www.microsoft.com/technet/security/bulletin/ms06-066.mspx