PC Tools - Essential tools for your PC | United States & Canada
Search
 
 
Features
 
 
Newsletter
 
Security Home > Windows NT, 2000 & XP > Windows NT

RPC Endpoint Mapper Denial of Service New

A denial of service vulnerability exists in the RPC endpoint mapper which could allow a malicious user to cause the RPC service to fail by issuing a malformed request.

Issue

The RPC endpoint mapper allows RPC clients to determine the port number currently assigned to a particular RPC service. The Windows NT 4.0 endpoint mapper contains a flaw that causes it to fail upon receipt of a request that contains a particular type of malformed data.

Because the endpoint mapper runs within the RPC service itself, exploiting this vulnerability would cause the RPC service itself to fail, with the attendant loss of any RPC-based services the server offers, as well as potential loss of some COM functions. Normal service could be restored by rebooting the server.

Affected Products

  • Microsoft Windows NT 4.0

Download

Patch: http://www.microsoft.com/Downloads/Release.asp?ReleaseID=32503

Further Details

Source: Microsoft Corporation

Reference: Microsoft Corporation

Updated: September 10, 2001

>> Recommended Download - secure your PC from spyware, adware and malware now with Spyware Doctor <<

 
  Copyright © 1998-2009 PC Tools. All rights reserved. Privacy Policy | Legal Notice