Vulnerability Bulletins |
Desbordamiento de búfer en la implementación RPC de Microsoft |
|
Vulnerability classification |
|
Property | Value |
Confidence level | Oficial |
Impact | Compromiso Root |
Dificulty | Principiante |
Required attacker level | Acceso remoto sin cuenta a un servicio estandar |
System information |
|
Property | Value |
Affected manufacturer | Microsoft |
Affected software |
Microsoft Windows NT 4.0 Microsoft Windows NT 4.0 Terminal Services Edition Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 |
Description |
|
Se ha descubierto una vulnerabilidad en la implementación RPC de Microsoft. La explotación de esta vulnerabilida podría permitir a un atacante remoto provocar una denegación de servicio o, incluso, la ejecución remota de código con privilegios de "Local System". | |
Solution |
|
Actualización de software Microsoft Windows Windows NT 4.0 http://www.microsoft.com/downloads/details.aspx?FamilyId=2CC66F4E-217E-4FA7-BDBF-DF77A0B9303F Windows NT 4.0 Terminal Server Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=6C0F0160-64FA-424C-A3C1-C9FAD2DC65CA Windows 2000 http://www.microsoft.com/downloads/details.aspx?FamilyId=C8B8A846-F541-4C15-8C9F-220354449117 Windows XP 32 bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=2354406C-C5B6-44AC-9532-3DE40F69C074 Windows XP 64 bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=1B00F5DF-4A85-488F-80E3-C347ADCC4DF1 Windows Server 2003 32 bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=F8E0FF3A-9F4C-4061-9009-3A212458E92E Windows Server 2003 64 bit Edition http://www.microsoft.com/downloads/details.aspx?FamilyId=2B566973-C3F0-4EC1-995F-017E35692BC7 |
|
Standar resources |
|
Property | Value |
CVE | CAN-2003-0352 |
BID | |
Other resources |
|
CERT Advisory CA-2003-16 Buffer Overflow in Microsoft RPC http://www.cert.org/advisories/CA-2003-16.html Microsoft Security Bulletin MS03-026 http://www.microsoft.com/technet/security/bulletin/MS03-026.mspx |
Version history |
||
Version | Comments | Date |
1.0 | Aviso emitido | 2003-07-29 |