CVE-2008-4250

Microsoft Windows — Microsoft Windows Buffer Overflow Vulnerability

Severity
critical
Aktiv ausgenutzt
aktiv ausgenutzt (KEV)
99.9 %
Kritisch — Modell sagt sehr hohe Ausnutzungs-Wahrscheinlichkeit in den nächsten 30 Tagen.
Veröffentlicht
2026-05-20 00:00 UTC
CWE-94, CWE-119

Weakness-Klassen (CWE)

  • CWE-94Base

    Improper Control of Generation of Code ('Code Injection')

    The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

    cwe.mitre.org →
  • CWE-119Class

    Improper Restriction of Operations within the Bounds of a Memory Buffer

    The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

    cwe.mitre.org →

Beschreibung

Microsoft Windows enthält einen Pufferüberlauf in der Windows Server Service, der es Remote-Angreifern ermöglicht, beliebige Code-Ausführung durch eine manipulierte RPC-Anfrage durchzuführen, die einen Überlauf während der Pfad-Kanonisierung auslöst.

Quelle: CISA_KEV

Betroffene Betriebssysteme

  • windows

    microsoft / windows_2000

  • windows

    microsoft / windows_server_2003

  • windows

    microsoft / windows_server_2008

  • windows

    microsoft / windows_vista

  • windows

    microsoft / windows_xp

Öffentliche Exploit-Referenzen

Öffentliche Proof-of-Concepts und Detection-Templates für diese Schwachstelle. Die Reife reicht von gemeldeten PoCs über funktionsfähige Detection-Skripte bis hin zu vollständig waffenfähigen Exploit-Modulen. NEOSEC mirrort den Code intern für forensische Analysen; nach außen verlinken wir ausschließlich auf die Original-Quellen.