Denial of Service in Windows Terminal Services
A vulnerability exists in WTS and Win2K RDP service that can result in a Denial of Service (DoS) attack.
October 18, 2001
Reported October 19, 2001, byMicrosoft.
VERSIONS AFFECTED
Allsystemsrunning Microsoft Terminal Services, including:
Microsoft Windows 2000 Server
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Datacenter Server
Microsoft Windows NT 4.0 Terminal Server Edition
DESCRIPTION
Avulnerability exists in WTS and Win2K RDP service that can result in a Denial ofService (DoS) attack. The attack results from a problem in the service thatdoesn't properly handle a particular series of data packets. To cause theservice to fail, an attacker wouldn't have to connect to the service but onlysend this series of data packets to the port on which RDP was listening.
VENDOR RESPONSE
Thevendor, Microsoft, has released securitybulletin MS01-052to address this vulnerability and recommends that affected users apply the patchat listed URL. Win2K Datacenter patches are hardware specific and will beavailable from the OEM when they are ready.
CREDIT
Discoveredby Luciano Martins of Deloitte& Touche Argentina.
About the Author
You May Also Like