Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
BID:6030
Info
Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
| Bugtraq ID: | 6030 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 22 2002 12:00AM |
| Updated: | Oct 22 2002 12:00AM |
| Credit: | Discovery credited to Chris Anley <[email protected]>. |
| Vulnerable: |
Microsoft Windows 2000 Server SP2 Microsoft Windows 2000 Server SP1 Microsoft Windows 2000 Server Microsoft Windows 2000 Professional SP2 Microsoft Windows 2000 Professional SP1 Microsoft Windows 2000 Professional Microsoft Windows 2000 Datacenter Server SP2 Microsoft Windows 2000 Datacenter Server SP1 Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Advanced Server SP2 Microsoft Windows 2000 Advanced Server SP1 Microsoft Windows 2000 Advanced Server |
| Not Vulnerable: |
Microsoft Windows 2000 Terminal Services SP3 Microsoft Windows 2000 Server SP3 Microsoft Windows 2000 Professional SP3 Microsoft Windows 2000 Datacenter Server SP3 Microsoft Windows 2000 Advanced Server SP3 |
Discussion
Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
Microsoft Windows 2000 contains a denial of service vulnerability due to a memory leak in snmp.exe. By sending a large number of repeated SNMP queries to obtain print queue information in the LANMAM MIB when the Print Spooler service is not running, resource exhaustion may occur.
This could cause the server being queried to stop responding until it is rebooted.
Microsoft Windows 2000 contains a denial of service vulnerability due to a memory leak in snmp.exe. By sending a large number of repeated SNMP queries to obtain print queue information in the LANMAM MIB when the Print Spooler service is not running, resource exhaustion may occur.
This could cause the server being queried to stop responding until it is rebooted.
Exploit / POC
Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
This vulnerability can be exploited using any SNMP management utility.
This vulnerability can be exploited using any SNMP management utility.
Solution / Fix
Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
Solution:
This vulnerability has been addressed in Windows 2000 Service Pack 3:
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Datacenter Server SP2
Microsoft Windows 2000 Advanced Server SP2
Microsoft Windows 2000 Professional SP2
Solution:
This vulnerability has been addressed in Windows 2000 Service Pack 3:
Microsoft Windows 2000 Server SP2
-
Microsoft Windows 2000 SP3
http://www.microsoft.com/windows2000/downloads/servicepacks/sp3/sp3lan g.asp
Microsoft Windows 2000 Datacenter Server SP2
-
Microsoft Windows 2000 SP3
http://www.microsoft.com/windows2000/downloads/servicepacks/sp3/sp3lan g.asp
Microsoft Windows 2000 Advanced Server SP2
-
Microsoft Windows 2000 SP3
http://www.microsoft.com/windows2000/downloads/servicepacks/sp3/sp3lan g.asp
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 SP3
http://www.microsoft.com/windows2000/downloads/servicepacks/sp3/sp3lan g.asp
References
Microsoft Windows 2000 SNMP Printer Query Denial of Service Vulnerability
References:
References: