Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Microsoft Patch MS09-063

11 views
Skip to first unread message

DJ

unread,
Nov 12, 2009, 12:46:02 PM11/12/09
to
The advisory for 063 is confusing I am not sure what their reference to local
subnet means, later in the advisory they state:

How could an attacker exploit the vulnerability?
An attacker could try to exploit the vulnerability by sending a specially
crafted message to the WSD TCP ports 5357 or 5358 on an affected system.
Alternatively, an attacker could send a specially crafted response to a WSD
message querying for devices, when initiated by the Windows client. Note that
applications that use the WSDAPI may use ports other than TCP ports 5357 and
5358, which are the defaults

Can someone clarify this for me.

Thanks

0 new messages