Microsoft Windows TCP Stack DoS Vulnerability
BID:3967
Info
Microsoft Windows TCP Stack DoS Vulnerability
| Bugtraq ID: | 3967 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 13 2001 12:00AM |
| Updated: | Apr 13 2001 12:00AM |
| Credit: | Posted to Bugtraq by 3APA3A <[email protected]> and published in a Microsoft Knowledge Base Article (Q280446). |
| Vulnerable: |
Microsoft Windows NT Workstation 4.0 SP6a Microsoft Windows NT Workstation 4.0 SP6 Microsoft Windows NT Workstation 4.0 SP5 Microsoft Windows NT Workstation 4.0 SP4 Microsoft Windows NT Workstation 4.0 SP3 Microsoft Windows NT Workstation 4.0 SP2 Microsoft Windows NT Workstation 4.0 SP1 Microsoft Windows NT Workstation 4.0 Microsoft Windows NT Server 4.0 SP6a Microsoft Windows NT Server 4.0 SP6 Microsoft Windows NT Server 4.0 SP5 Microsoft Windows NT Server 4.0 SP4 Microsoft Windows NT Server 4.0 SP3 Microsoft Windows NT Server 4.0 SP2 Microsoft Windows NT Server 4.0 SP1 Microsoft Windows NT Server 4.0 Microsoft Windows NT Enterprise Server 4.0 SP6a Microsoft Windows NT Enterprise Server 4.0 SP6 Microsoft Windows NT Enterprise Server 4.0 SP5 Microsoft Windows NT Enterprise Server 4.0 SP4 Microsoft Windows NT Enterprise Server 4.0 SP3 Microsoft Windows NT Enterprise Server 4.0 SP2 Microsoft Windows NT Enterprise Server 4.0 SP1 Microsoft Windows NT Enterprise Server 4.0 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Professional SP1 Microsoft Windows 2000 Professional Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server |
| Not Vulnerable: |
Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Professional SP2 Microsoft Windows 2000 Advanced Server SP2 |
Discussion
Microsoft Windows TCP Stack DoS Vulnerability
An issue exists in Windows which could cause the TCP stack to consume all available system memory.
This is achieved if a user sends numerous empty TCP packets to a host on port 139.
Successful exploitation of this vulnerability could render the system useless.
An issue exists in Windows which could cause the TCP stack to consume all available system memory.
This is achieved if a user sends numerous empty TCP packets to a host on port 139.
Successful exploitation of this vulnerability could render the system useless.
Solution / Fix
Microsoft Windows TCP Stack DoS Vulnerability
Solution:
Microsoft has acknowledged this issue in Windows 2000 and can be addressed by installing Service Pack 2.
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Advanced Server SP1
Microsoft Windows 2000 Professional SP1
Microsoft Windows 2000 Server SP1
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Server
Solution:
Microsoft has acknowledged this issue in Windows 2000 and can be addressed by installing Service Pack 2.
Microsoft Windows 2000 Professional
-
Microsoft W2KSP2
http://download.microsoft.com/download/win2000platform/SP/SP2/NT5/EN-U S/W2KSP2.exe
Microsoft Windows 2000 Advanced Server SP1
-
Microsoft W2KSP2
http://download.microsoft.com/download/win2000platform/SP/SP2/NT5/EN-U S/W2KSP2.exe
Microsoft Windows 2000 Professional SP1
-
Microsoft W2KSP2
http://download.microsoft.com/download/win2000platform/SP/SP2/NT5/EN-U S/W2KSP2.exe
Microsoft Windows 2000 Server SP1
-
Microsoft W2KSP2
http://download.microsoft.com/download/win2000platform/SP/SP2/NT5/EN-U S/W2KSP2.exe
Microsoft Windows 2000 Advanced Server
-
Microsoft W2KSP2
http://download.microsoft.com/download/win2000platform/SP/SP2/NT5/EN-U S/W2KSP2.exe
Microsoft Windows 2000 Server