20020417 [VulnWatch] KPMG-2002011: Windows 2000 microsoft-ds Denial of Servicemailing list
http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0025.html CVE-2002-0597
Microsoft Windows Server 2000 - Lanman Denial of Service (1)
Record summary
CVE-2002-0597 has a selected CVSS score of 5.0; EIP currently links 2 catalogued exploits.
Description
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malformed data to microsoft-ds port 445.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBMicrosoft Windows Server 2000 - Lanman Denial of Service (1)ExploitDB exploitby Daniel NystromNot analyzed1 file
ExploitDBMicrosoft Windows Server 2000 - Lanman Denial of Service (2)ExploitDB exploitby ch0wnNot analyzed1 file
References
920020417 KPMG-2002011: Windows 2000 microsoft-ds Denial of Servicemailing list
http://online.securityfocus.com/archive/1/268066 Q320751Vendor advisory
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ320751 support.microsoft.com
http://support.microsoft.com/default.aspx?scid=kb;[LN];Q320751 win2k-lanman-dos(8867)vdb entry
http://www.iss.net/security_center/static/8867.php VU#693099Third-party advisory
http://www.kb.cert.org/vuls/id/693099 5179vdb entry
http://www.osvdb.org/5179 4532vdb entry
http://www.securityfocus.com/bid/4532 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-0597