OSVDB ID: 69819

Title: Microsoft Windows Netlogon RPC Service Crafted Request Remote DoS

Info

Disclosure

Dec 14, 2010

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Dec 14, 2010

Description

Microsoft Windows contains a flaw that may allow a remote denial of service. The issue is triggered when a NULL-pointer dereference error in the Netlogon RPC Service of a domain controller occurs, and may be exploited via a specially crafted RPC packet to result in a loss of availability.

Classification

Location: Remote / Network Access
Attack Type: Denial of Service
Impact: Loss of Availability
Solution: Patch / RCS
Exploit: Exploit Unknown
Disclosure: Vendor Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Microsoft has released a patch to address this vulnerability. Check the vendor advisory or solution in the references section.

Products

Microsoft Corporation

Windows Server

2003 SP2
2003 x64 Edition SP2
2003 with SP2 for Itanium-based Systems
2008
2008 SP2
2008 R2 for x64-based Systems

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/69819