Denial of Service in Windows Terminal Services

A vulnerability exists in WTS and Win2K RDP service that can result in a Denial of Service (DoS) attack.

Ken Pfeil

October 18, 2001

2 Min Read
ITPro Today logo in a gray background | ITPro Today

Reported October 19, 2001, byMicrosoft.

VERSIONS AFFECTED

Allsystemsrunning Microsoft Terminal Services, including:

  • Microsoft Windows 2000 Server

  • Microsoft Windows 2000 Advanced Server

  • Microsoft Windows 2000 Datacenter Server

  • Microsoft Windows NT 4.0 Terminal Server Edition

 

DESCRIPTION
Avulnerability exists in WTS and Win2K RDP service that can result in a Denial ofService (DoS) attack. The attack results from a problem in the service thatdoesn't properly handle a particular series of data packets. To cause theservice to fail, an attacker wouldn't have to connect to the service but onlysend this series of data packets to the port on which RDP was listening.

 

VENDOR RESPONSE

Thevendor, Microsoft, has released securitybulletin MS01-052to address this vulnerability and recommends that affected users apply the patchat listed URL. Win2K Datacenter patches are hardware specific and will beavailable from the OEM when they are ready.

 

CREDIT
Discoveredby Luciano Martins of Deloitte& Touche Argentina.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like