PT-2005-2934 · Microsoft · Windows 2000+3

Kostya Kortchinsky

·

Published

2005-10-13

·

Updated

2018-10-12

·

CVE-2005-1985

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to Windows 2000 SP4, XP SP3, and Server 2003 SP2
Description The issue allows remote attackers to execute arbitrary code due to an "unchecked buffer" when processing certain crafted network messages. This is related to the Client Service for NetWare (CSNW) on affected Microsoft Windows versions.
Recommendations For Windows 2000, apply the necessary patch or update to at least SP4. For Windows XP, update to at least SP3. For Windows Server 2003, update to at least SP2. As a temporary workaround, consider disabling the Client Service for NetWare (CSNW) until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1985

Affected Products

Client Service For Netware
Windows 2000
Windows Server 2003
Windows Xp