Microsoft Invalid RPC Request Denial Of Service Vulnerability
BID:5880
Info
Microsoft Invalid RPC Request Denial Of Service Vulnerability
| Bugtraq ID: | 5880 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2002-1141 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 03 2002 12:00AM |
| Updated: | Jul 11 2009 05:06PM |
| Credit: | This vulnerability was first detailed in a Microsoft Security Bulletin. |
| Vulnerable: |
Microsoft Services for Unix 3.0 |
| Not Vulnerable: | |
Discussion
Microsoft Invalid RPC Request Denial Of Service Vulnerability
A denial of service condition has been reported for RPC applications that use the Sun RPC library. This vulnerability is the result of RPC applications improperly checking the size of TCP requests. RPC clients that use the Sun RPC library are expected to have TCP requests that specify the size of the record that follows. Due to a flaw in the way the RPC server handles client packets, it is possible for an attacker to send a malformed request to the RPC server.
When RPC servers receive malformed TCP requests, it results in the server failing to respond to further requests for service.
A denial of service condition has been reported for RPC applications that use the Sun RPC library. This vulnerability is the result of RPC applications improperly checking the size of TCP requests. RPC clients that use the Sun RPC library are expected to have TCP requests that specify the size of the record that follows. Due to a flaw in the way the RPC server handles client packets, it is possible for an attacker to send a malformed request to the RPC server.
When RPC servers receive malformed TCP requests, it results in the server failing to respond to further requests for service.
Exploit / POC
Microsoft Invalid RPC Request Denial Of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Invalid RPC Request Denial Of Service Vulnerability
Solution:
Microsoft has released a patch:
Microsoft Services for Unix 3.0
Solution:
Microsoft has released a patch:
Microsoft Services for Unix 3.0
-
Microsoft Q329209
http://www.microsoft.com/Downloads/Release.asp?ReleaseID=43447
References
Microsoft Invalid RPC Request Denial Of Service Vulnerability
References:
References:
- Microsoft Security Bulletin MS02-057 (Microsoft)