Exploit Circulating for Windows LSASS Vulnerability | eWeek

Exploit Circulating for Windows LSASS Vulnerability

Written By
Larry Seltzer
Larry Seltzer
Apr 29, 2004
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

An exploit has begun circulating for another of the vulnerabilities in Windows revealed by Microsoft Corp. earlier this month. The vulnerability, a buffer overrun in the Local Security Authority Subsystem Service (LSASS), was patched as part of a large, cumulative update coded MS04-011.

The exploit takes the form of a new variant of the Gaobot worm. According to McAfees Avert research, this worm has had almost a thousand variations since its initial release, partly because the source to the worm has been released as well.

Once installed, the worm allows a remote attacker to perform a large number of dangerous operations, including installing and removing software, performing denial of service attacks, and shutting down the computer.

The MS04-011 patch that addresses this problem is the same one that addresses the SSL/PCT vulnerability that has received much attention in recent days because of separate exploits. Microsoft has admitted, however, that this patch has technical problems that can cause some systems to lock up and fail to reboot. Administrators should still install the patch, but only after testing.

In spite of the danger if a system is infected, McAfee has the worm, which it calls W32/Gaobot.worm.ali, rated as a “low” threat both to corporate and home users, because it has not spread far.

/zimages/4/28571.gifCheck outeWEEK.coms Security Centerat http://security.eweek.com for security news, views and analysis.
Be sure to add our eWEEK.com security news feed to your RSS newsreader or My Yahoo page:http://us.i1.yimg.com/us.yimg.com/i/us/my/addtomyyahoo2.gif

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.