Microsoft Windows NNTP Denial of Service Vulnerability
BID:3183
Info
Microsoft Windows NNTP Denial of Service Vulnerability
| Bugtraq ID: | 3183 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 15 2001 12:00AM |
| Updated: | Aug 15 2001 12:00AM |
| Credit: | Discovered by Aiden ORawe and published in a Microsoft Security Bulletin MS01-043 on August 15, 2001. |
| Vulnerable: |
Microsoft Windows NT 4.0 Option Pack Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server Microsoft Exchange Server 2000 |
| Not Vulnerable: | |
Discussion
Microsoft Windows NNTP Denial of Service Vulnerability
Due to a flaw in the Microsoft Windows NNTP service, it is possible for a host to experience a denial of service condition.
If malformed news postings are repeatedly submitted to a host running the affected service, all available memory resources could be consumed.
A remote attacker may be able to cause a denial of service affecting the NNTP service and other applications running on the affected host.
Due to a flaw in the Microsoft Windows NNTP service, it is possible for a host to experience a denial of service condition.
If malformed news postings are repeatedly submitted to a host running the affected service, all available memory resources could be consumed.
A remote attacker may be able to cause a denial of service affecting the NNTP service and other applications running on the affected host.
References
Microsoft Windows NNTP Denial of Service Vulnerability
References:
References:
- Microsoft Security Bulletin MS01-043 (Microsoft)
- Microsoft Technet Security (Microsoft)