Oval Definition:oval:org.mitre.oval:def:6079
Revision Date:2009-12-21Version:43
Title:Web Services on Devices API Memory Corruption Vulnerability
Description:The Web Services on Devices API (WSDAPI) in Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 does not properly process the headers of WSD messages, which allows remote attackers to execute arbitrary code via a crafted (1) message or (2) response, aka "Web Services on Devices API Memory Corruption Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-2512
Platform(s):Microsoft Windows Server 2008
Microsoft Windows Vista
Product(s):SMBv2
Definition Synopsis
  • Windows Vista x86/x64
  • Windows Vista
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6000.16000
  • AND the version of wsdapi.dll is less than 6.0.6000.16903
  • OR Windows Vista x86/x64
  • Windows Vista
  • Microsoft Windows Vista (32-bit) is installed
  • OR Microsoft Windows Vista x64 Edition is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6000.20000
  • AND the version of wsdapi.dll is less than 6.0.6000.21103
  • OR Windows Vista x86/x64 SP1, Windows Server 2008 x86/x64/ia64
  • OS section
  • Microsoft Windows Vista (32-bit) Service Pack 1 is installed
  • OR Microsoft Windows Vista x64 Edition Service Pack 1 is installed
  • OR Microsoft Windows Server 2008 (32-bit) is installed
  • OR Microsoft Windows Server 2008 (64-bit) is installed
  • OR Microsoft Windows Server 2008 (ia-64) is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6001.18000
  • AND the version of wsdapi.dll is less than 6.0.6001.18306
  • OR Windows Vista x86/x64 SP1, Windows Server 2008 x86/x64/ia64
  • OS section
  • Microsoft Windows Vista (32-bit) Service Pack 1 is installed
  • OR Microsoft Windows Vista x64 Edition Service Pack 1 is installed
  • OR Microsoft Windows Server 2008 (32-bit) is installed
  • OR Microsoft Windows Server 2008 (64-bit) is installed
  • OR Microsoft Windows Server 2008 (ia-64) is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6001.22000
  • AND the version of wsdapi.dll is less than 6.0.6001.22491
  • OR Windows Vista x86/x64 SP2, Windows Server 2008 x86/x64/ia64 SP2
  • OS section
  • Microsoft Windows Vista (32-bit) Service Pack 2 is installed
  • OR Microsoft Windows Vista x64 Edition Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 (32-bit) Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 x64 Edition Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 Itanium-Based Edition Service Pack 2 is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6002.18000
  • AND the version of wsdapi.dll is less than 6.0.6002.18085
  • OR Windows Vista x86/x64 SP2, Windows Server 2008 x86/x64/ia64 SP2
  • OS section
  • Microsoft Windows Vista (32-bit) Service Pack 2 is installed
  • OR Microsoft Windows Vista x64 Edition Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 (32-bit) Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 x64 Edition Service Pack 2 is installed
  • OR Microsoft Windows Server 2008 Itanium-Based Edition Service Pack 2 is installed
  • AND the version of wsdapi.dll is greater than or equal 6.0.6002.22000
  • AND the version of wsdapi.dll is less than 6.0.6002.22194
  • BACK