PT-2002-1107 · Microsoft · Windows 2000

Published

2002-10-22

·

Updated

2019-04-30

·

CVE-2001-1451

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows 2000 versions prior to SP3
Description A memory leak issue exists in the SNMP LAN Manager (LANMAN) MIB extension for Microsoft Windows. This issue can be triggered when the Print Spooler is not running, allowing remote attackers to cause a denial of service by consuming system memory. This can be achieved through a large number of GET or GETNEXT requests.
Recommendations For Microsoft Windows 2000 versions prior to SP3, apply Service Pack 3 to resolve the issue. As a temporary workaround, consider restricting access to the SNMP service to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-1451

Affected Products

Windows 2000