Microsoft Terminal Server 4.0 Vulnerable to DoS Attack

Terminal Server 4.0 running SP6a and below is vulnerable to a remotely and locally exploitable buffer overflow resulting in arbritrary commands being launched.

Steve Manzuik

November 7, 2000

1 Min Read
ITPro Today logo in a gray background | ITPro Today

Reported November 8, 2000 by CORE SDI

VERSIONS AFFECTED

DESCRIPTIONA buffer overflow in Windows NT 4.0 Terminal Server running SP6a and below has been identified to be remotely exploitable.  The overflow is present in the RegAPI.DLL that is called by MSGINA.DLL when a user attempts to login.

By entering a long username in the username edit box, a malicious user could cause the Terminal Server to crash.  When performed locally, this overflow could result in the execution of arbitrary commands.

VENDOR RESPONSE

Microsoft has released a security bulletin, MS00-0087 and a patch that is available from;

http://www.microsoft.com/Downloads/Release.asp?ReleaseID=25565

CREDITDiscovered by CORE SDI

Read more about:

Microsoft
Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like