Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2003-0605
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2003-0605

Description:
The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.

CVE Status:
Candidate

References:

OVAL
  http://oval.mitre.org/oval/definitions/data/oval1118.html
  http://oval.mitre.org/oval/definitions/data/oval494.html

MS
  http://www.microsoft.com/technet/security/bulletin/MS03-039.asp

FULLDISC
  http://lists.grok.org.uk/pipermail/full-disclosure/2003-July/006851.html

CERT-VN
  326746

CERT
  http://www.cert.org/advisories/CA-2003-23.html
  http://www.cert.org/advisories/CA-2003-19.html

BUGTRAQ
  http://marc.theaimsgroup.com/?l=bugtraq&m=105880332428706&w=2


Return to the previous page.