漏洞信息详情
Microsoft Windows终端服务器服务DoS漏洞
- CNNVD编号:CNNVD-200110-125
- 危害等级: 中危
- CVE编号:
CVE-2001-0540
- 漏洞类型:
输入验证
- 发布时间:
2001-10-30
- 威胁类型:
远程
- 更新时间:
2005-05-02
- 厂 商:
microsoft - 漏洞来源:
Discovered by Pete… -
漏洞简介
Windows NT版本和Windows 2000版本的Terminal服务器内存泄露漏洞。远程攻击者可以借助大量畸形到端口3389的Remote Desktop Protocol (RDP)请求导致服务拒绝(内存消耗)。
漏洞公告
Microsoft has released the following patches which rectify this issue:
Microsoft Windows 2000 Server SP2
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Advanced Server SP1
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Datacenter Server SP1
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Server SP1
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Advanced Server SP2
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Advanced Server
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows 2000 Server
-
Microsoft Q292435
http://download.microsoft.com/download/win2000platform/Patch/Q292435/N
T5/EN-US/Q292435_W2K_SP3_x86_en.EXE
Microsoft Windows NT Terminal Server 4.0
参考网址
来源: MS
名称: MS01-040
链接:http://www.microsoft.com/technet/security/bulletin/ms01-040.asp
来源: XF
名称: win-terminal-rdp-dos(6912)
链接:http://xforce.iss.net/static/6912.php
来源: BID
名称: 3099
链接:http://www.securityfocus.com/bid/3099
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END