PT-2004-1168 · Microsoft · Internet Security/Acceleration (Isa) Server 2000
Publicado
2004-01-15
·
Atualizado
2018-10-12
·
CVE-2003-0819
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Security and Acceleration Server 2000
Description
A buffer overflow issue exists in the H.323 filter, allowing remote attackers to execute arbitrary code in the Microsoft Firewall Service via certain H.323 traffic. This is demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.
Recommendations
For Microsoft Internet Security and Acceleration Server 2000, consider disabling the H.323 filter as a temporary workaround until a patch is available. Restrict access to the H.323 protocol to minimize the risk of exploitation.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Internet Security/Acceleration (Isa) Server 2000