Denial of Service in Microsoft Windows Server Message Block
An unchecked buffer exists in Microsoft’s Server Message Block (SMB) that can result in a remotely exploitable Denial of Service (DoS) condition on the vulnerable system.
August 22, 2002
ReportedAugust 22, 2002, by Core Security Technologies.
VERSIONS AFFECTED
· Windows XP Professional
· Windows 2000 Advanced Server
· Windows 2000 Server
· Windows 2000 Professional
· Windows NT Workstation 4.0
· Windows NT Server 4.0
· Windows NT Server 4.0, Terminal Sever Edition
DESCRIPTION
An unchecked buffer exists inMicrosoft’s Server Message Block (SMB) that can result in a remotelyexploitable Denial of Service (DoS) condition on the vulnerable system. Bysending a specially crafted packet to certain transactions of the SMB commandSMB_COM_TRANSACTION, an attacker can halt the OS with a blue screen. You canfind detailed information about this vulnerability on the discoverer’s Website.
VENDOR RESPONSE
The vendor, Microsoft,has released Security Bulletin MS02-045(Unchecked Buffer in Network Share Provider Can Lead to Denial of Service) toaddress these vulnerabilities and recommends that affected users download andapply the appropriate patch mentioned in the bulletin.
CREDIT
Discovered by AlbertoSolino and Hernan Ochoa of Core SecurityTechnologies.
About the Author
You May Also Like