Overview
An input validation error in the Microsoft Remote Desktop Protocol (RDP) service may allow a remote attacker to cause a denial-of-service condition.
Description
Microsoft describes the Remote Desktop Protocol (RDP) as follows. RDP is based on, and is an extension of, the T.120 protocol family standards. It is a multichannel-capable protocol that allows for separate virtual channels for carrying device communication and presentation data from the server, as well as encrypted client mouse and keyboard data.
|
Impact
This vulnerability allows unauthorized, remote attackers to crash a system running the RDP service resulting in a denial-of-service condition. |
Solution
Apply An Update Microsoft has addressed this issue in Microsoft Security Bulletin MS05-041. |
Microsoft recommends the following workarounds. While these workarounds will not correct the underlying vulnerability, they help block known attack vectors.
Disabling Terminal Services, Remote Desktop, Remote Assistance, and Windows Small Business Server 2003 Remote Web Workplace may reduce the risk of exploitation. Block port 3389/tcp at the perimeter: |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://www.microsoft.com/technet/security/advisory/904797.mspx
- http://www.microsoft.com/windowsxp/using/helpandsupport/rafaq-technical.mspx
- http://www.microsoft.com/resources/documentation/Windows/XP/all/reskit/en-us/prmb_tol_drft.asp
- http://security-protocols.com/modules.php?name=News&file=article&sid=2852
- http://security-protocols.com/modules.php?name=News&file=article&sid=2783
- http://security-protocols.com/upcoming/xp-sp2-remote.jpg
- http://secunia.com/advisories/16071/
- http://securitytracker.com/alerts/2005/Jul/1014498.html
- http://www.securityfocus.com/bid/14259
- http://www.microsoft.com/technet/security/bulletin/MS05-041.mspx
Acknowledgements
This vulnerability was reported in Microsoft Security Bulletin MS05-041. Microsoft credits Tom Ferris of Security Protocols for providing information regarding this vulnerability.
This document was written by Jeff Gennari and Will Dorman
Other Information
CVE IDs: | CVE-2005-1218 |
Severity Metric: | 16.12 |
Date Public: | 2005-07-14 |
Date First Published: | 2005-08-09 |
Date Last Updated: | 2005-09-06 15:10 UTC |
Document Revision: | 65 |