Home / bulletins MS10-006 - Critical: Vulnerabilities in SMB Client Could Allow Remote Code Execution (978251) - Version:1.1
Posted on 11 February 2010
CriticalSeverity Rating: Critical - Revision Note: V1.1 (February 10, 2010): Changed entries in the Systems Management Server table for SMS 2003 with ITMU for Windows 7 and Windows Server 2008 R2. This is an informational change only. There were no changes to the security update files or detection logic.Summary: This security update resolves two privately reported vulnerabilities in Microsoft Windows. The vulnerabilities could allow remote code execution if an attacker sent a specially crafted SMB response to a client-initiated SMB request. To exploit these vulnerabilities, an attacker must convince the user to initiate an SMB connection to a malicious SMB server.