Vector: | Local Network |
Severity: | Medium |
Patch: | Patched |
Impact: |
Data Manipulation Denial of Service (DoS) Remote Code Execution (RCE) |
Software: |
Microsoft Windows 2000 Advanced Server Microsoft Windows 2000 Datacenter Server Microsoft Windows 2000 Professional Microsoft Windows 2000 Server Microsoft Windows NT 4.0 Server Microsoft Windows XP Home Edition Microsoft Windows XP Professional |
A remote code execution vulnerability was found in Windows SMB.
Buffer overflow vulnerability exists when validating parameters of a SMB packet. When a client sends a SMB packet to a server, it includes various parameters. On of these parameters is a size parameter, which the server doesn't check in any way. An attacker can a buffer overflow by sending a specially crafted SMB packet containing a size parameter, which is too small.
Solution:
For Microsoft Windows 2000 Advanced Server: Apply Service Pack 4 or the patch via WindowsUpdate or manually.
CVE ID:
CVE-2003-0345
Links:
http://www.microsoft.com/technet/security/bulletin/MS03-024.asp