Microsoft Windows Warning: DOS Simulator Service Vulnerability

  

Microsoft released a user warning on a vulnerability in the 32-bit version of the Windows operating system on Wednesday night, which could allow ulterior motives to gain administrator privileges. Install the program, modify system data or create a system account. The 32-bit operating system affected by this vulnerability is Windows7/Vista/XP/2000/Server2003/Server2008, but there is no such vulnerability in 64-bit operating systems.

Microsoft executive security executive Jerry Bryant said: "We have not found any attacks against this vulnerability, so we believe that the vulnerability is currently very limited for Microsoft users." Br>

He said: To perform an attack against this vulnerability, an attacker needs to have a legitimate login account and need to log in to the system locally. Once the system is logged in, the attack can be launched to obtain system management rights.

Microsoft said that the current fix for this vulnerability is still in the process of production, and it is recommended that users temporarily turn off the Windows Virtual DOS Machine (NTVDM) DOS emulator service.

But a day ago, Google’s security expert Tavis Ormandy had already disclosed the vulnerability on his blog, saying that he informed Microsoft about the vulnerability as early as June last year.

Copyright © Windows knowledge All Rights Reserved