About this tag
MS11-058 is a critical security bulletin from Microsoft addressing two privately reported vulnerabilities in Windows DNS Server. These vulnerabilities could allow remote code execution if an attacker registers a domain, creates an NAPTR DNS resource record, and sends a specially crafted NAPTR query to the target DNS server. The update, identified by KB2562485, was released on August 9, 2011, with a revision on October 25, 2011, that updated detection logic and corrected bulletin replacement information. Servers without the DNS role enabled are not at risk. This tag covers discussions and details about the MS11-058 bulletin, including its severity, affected systems, and update information.
-
MS11-058 - Critical : Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) - Ve
Severity Rating: Critical Revision Note: V1.2 (October 25, 2011): Announced a change to detection logic and corrected bulletin replacement information for some affected configurations. There were no changes to the security update files. See the Update FAQ for details...- News
- Thread
- attack vector critical dns extended security updates ms11-058 naptr query remote code execution update faq vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS11-058 - Critical : Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) - Ve
Severity Rating: Critical Revision Note: V1.0 (August 9, 2011): Bulletin published. Summary: This security update resolves two privately reported vulnerabilities in Windows DNS server. The more severe of these vulnerabilities could allow remote code execution if an attacker...- News
- Thread
- critical dns extended security updates ms11-058 naptr remote code execution resource record server vulnerability windows
- Replies: 0
- Forum: Security Alerts
-
MS11-058 - Critical: Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485) - Ver
Severity Rating: Critical - Revision Note: V1.0 (August 9, 2011): Bulletin published.Summary: This security update resolves two privately reported vulnerabilities in Windows DNS server. The more severe of these vulnerabilities could allow remote code execution if an attacker registers a domain...- News
- Thread
- attack vector critical dns execution extended security updates ms11-058 network security remote code execution vulnerability
- Replies: 0
- Forum: Security Alerts
-
MS11-058 - Critical: Vulnerabilities in DNS Server Could Allow Remote Code Execution (2562485)
Bulletin Severity Rating:Critical - This security update resolves two privately reported vulnerabilities in Windows DNS server. The more severe of these vulnerabilities could allow remote code execution if an attacker registers a domain, creates an NAPTR DNS resource record, and then sends a...- News
- Thread
- attack critical dns extended security updates ms11-058 query remote code execution resource record vulnerability windows
- Replies: 0
- Forum: Security Alerts