Workstation Proof of Concept Released

November 17, 2003


New Windows Worm on the Way?

With the posting Wednesday of proof-of-concept exploit code
for one of the newly discovered vulnerabilities in Windows, the
familiar chain of events that often leads to the release of a
worm has begun.

Less than 24 hours after Microsoft issued the fix, two members of the BugTraq security mailing list posted exploit code for the vulnerability. The author of one of the exploits said the code had been tested only on a Windows 2000 machine with Service Pack 4 installed and the FAT32 file system running. The other exploit is designed for machines running Windows XP. However, experts said it would take little effort to adapt the code for other Windows machines.

And, more importantly, the Workstation vulnerability appears to be a prime candidate for a worm