Denial of Service in Microsoft's Distributed Transaction Coordinator for Windows 2000

Reported April 19, 2002, by Peter Gründl.

VERSIONS AFFECTED

·         All Windows 2000 systems not containing the patch referenced in Microsoft Security Bulletin MS02-018

 

DESCRIPTION

A Denial of Service (DoS) condition exists within Microsoft’s distributed transaction coordinator (DTC) for Win2K. An attacker sending 20,200 null characters to the DTC service listening on TCP port 3372 can cause msdtc.exe to spike CPU usage at 100 percent, resulting in MSDTC refusing connections and depleting kernel resources.

 

VENDOR RESPONSE

 

The vendor, Microsoft, has released a patch that resolves this vulnerability.

 

CREDIT
Discovered by Peter Gründl.

Hide comments

Comments

  • Allowed HTML tags: <em> <strong> <blockquote> <br> <p>

Plain text

  • No HTML tags allowed.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Lines and paragraphs break automatically.
Publish