Denial of Service in Microsoft Windows Server Message Block

An unchecked buffer exists in Microsoft’s Server Message Block (SMB) that can result in a remotely exploitable Denial of Service (DoS) condition on the vulnerable system.

Ken Pfeil

August 22, 2002

1 Min Read
ITPro Today logo in a gray background | ITPro Today

ReportedAugust 22, 2002, by Core Security Technologies.

VERSIONS AFFECTED

 

·        Windows XP Professional

·        Windows 2000 Advanced Server

·        Windows 2000 Server

·        Windows 2000 Professional

·        Windows NT Workstation 4.0

·        Windows NT Server 4.0

·        Windows NT Server 4.0, Terminal Sever Edition

 

DESCRIPTION

 

An unchecked buffer exists inMicrosoft’s Server Message Block (SMB) that can result in a remotelyexploitable Denial of Service (DoS) condition on the vulnerable system. Bysending a specially crafted packet to certain transactions of the SMB commandSMB_COM_TRANSACTION, an attacker can halt the OS with a blue screen. You canfind detailed information about this vulnerability on the discoverer’s Website.

 

VENDOR RESPONSE

 

The vendor, Microsoft,has released Security Bulletin MS02-045(Unchecked Buffer in Network Share Provider Can Lead to Denial of Service) toaddress these vulnerabilities and recommends that affected users download andapply the appropriate patch mentioned in the bulletin.

 

CREDIT
Discovered by AlbertoSolino and Hernan Ochoa of Core SecurityTechnologies.

 

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like