Intrusion Prevention

MS.Windows.iSNS.Server.Memory.Corruption

Description

This indicates an attack attempt to exploit a Memory Corruption vulnerability in Windows iSNS Server service.
The vulnerability is due to insufficient validation of inputs in the iSNS Server service. An attacker may be able to exploit this to execute arbitrary code within the context of the SYSTEM account, via a crafted application.

Affected Products

Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
Windows Server 2012
Windows Server 2012 R2
Windows Server 2016 for x64-based Systems

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
https://technet.microsoft.com/library/security/ms17-012

CVE References

CVE-2017-0104