Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
BID:7930
Info
Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
| Bugtraq ID: | 7930 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 02 2003 12:00AM |
| Updated: | Jul 02 2003 12:00AM |
| Credit: | The discovery of this vulnerability has been credited to Eduardo Arias, Gabriel Becedillas, Ricardo Quesada and Damian Saura from Core Security Technologies. |
| Vulnerable: |
Microsoft Windows 2000 Server SP3 Microsoft Windows 2000 Datacenter Server SP3 Microsoft Windows 2000 Advanced Server SP3 |
| Not Vulnerable: |
Microsoft Windows 2000 Server SP4 Microsoft Windows 2000 Datacenter Server SP4 Microsoft Windows 2000 Advanced Server SP4 |
Discussion
Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
A vulnerability has been discovered in Microsoft Windows 2000. The problem occurs in the Active Directory component and will result in a denial of service.
An unauthenticated attacker could exploit this vulnerability by transmitting a malformed LDAP version 3 request to a target Microsoft Windows 2000 server. When the request is processed, an exception will be triggered effectively causing the target server to crash.
An affected system is said to reboot within 30 seconds of the exception being triggered.
A vulnerability has been discovered in Microsoft Windows 2000. The problem occurs in the Active Directory component and will result in a denial of service.
An unauthenticated attacker could exploit this vulnerability by transmitting a malformed LDAP version 3 request to a target Microsoft Windows 2000 server. When the request is processed, an exception will be triggered effectively causing the target server to crash.
An affected system is said to reboot within 30 seconds of the exception being triggered.
Exploit / POC
Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
CORE has developed a working commercial exploit for their IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
CORE has developed a working commercial exploit for their IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
Solution:
This issue has been addressed in Windows 2000 Service Pack 4:
Microsoft Windows 2000 Server SP3
Microsoft Windows 2000 Advanced Server SP3
Solution:
This issue has been addressed in Windows 2000 Service Pack 4:
Microsoft Windows 2000 Server SP3
-
Microsoft Windows 2000 SP4
http://www.microsoft.com/windows2000/downloads/servicepacks/sp4/defaul t.asp
Microsoft Windows 2000 Advanced Server SP3
-
Microsoft Windows 2000 SP4
http://www.microsoft.com/windows2000/downloads/servicepacks/sp4/defaul t.asp
References
Microsoft Windows 2000 Active Directory Remote Stack Overflow Vulnerability
References:
References:
- Active Directory (Microsoft)
- Active Directory DoS (CORE Security)