SkipNavigation
US-CERT
American Flag
  Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information


 
 View Notes By
  Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric



 Other Documents
  Technical Alerts

Technical Bulletins

Alerts

Security Tips

 

Vulnerability Note VU#693099

Microsoft Windows 2000 vulnerable to DoS via malformed packets sent to port 445/tcp

Overview

The default configuration of Microsoft Windows 2000 does not properly handle malformed packets received on TCP port 445. As a result, Windows may cease to function normally upon receipt of malformed packets on this port.

I. Description

Microsoft LAN Manager (LANMAN) is enabled by default on systems running Microsoft Windows 2000. LANMAN listens to TCP port 445 and allocates kernel resources to handle requests on this port.

When LANMAN receives malformed packets, the system allocates kernel memory to handling these packets. When memory use approaches 100%, Windows and other applications may begin to behave erratically or fail. Symptoms may include: chronically incomplete drawing of windows; on-screen error boxes indicating that the sound driver could not be loaded, when a system sound would normally be played; IIS failure to execute ASP pages; and error messages such as "You do not have permissions to..." when attempting routine tasks such as restarting the system.

According to testing performed at KPMG Denmark, a system attacked by exploitation of the vulnerability may not be able to recover on its own, once memory is sufficiently consumed to inhibit normal operation.

II. Impact

The complete impact of this vulnerability is not yet known. Consumption of memory will make applications fail in various ways and disrupt services provided by the system.

III. Solution

Apply a patch


Upgrade to Windows 2000 Service Pack 3.

Systems Affected

VendorStatusDate Updated
Microsoft CorporationVulnerable10-Aug-2002

References


http://www.securityfocus.com/bid/4532

Credit

Thanks to Peter Gründl for reporting this vulnerability.

This document was written by Shawn Van Ittersum.

Other Information

Date Public04/17/2002
Date First Published09/16/2002 07:45:25 PM
Date Last Updated04/15/2003
CERT Advisory 
CVE Name 
US-CERT Technical Alerts 
Metric5.49
Document Revision7

If you have feedback, comments, or additional information about this vulnerability, please send us email.
 

 
Page Corner Image
Copyright 2002 Carnegie Mellon University
Disclaimers and copyright information
Get Adobe Reader Get Adobe Reader