Reported April 19, 2002, by Peter Gründl.
· All Windows 2000 systems not containing the patch referenced in Microsoft Security Bulletin MS02-018
A Denial of Service (DoS) condition exists within Microsoft’s distributed transaction coordinator (DTC) for Win2K. An attacker sending 20,200 null characters to the DTC service listening on TCP port 3372 can cause msdtc.exe to spike CPU usage at 100 percent, resulting in
refusing connections and depleting kernel resources.
Discovered by Peter Gründl.