Guest guest Posted July 19, 2005 Report Share Posted July 19, 2005 " It is easy to be brave from a safe distance " Aesop, (620 BC-560 BC), classical Greek author. -Denial of service in Windows Remote Desktop Protocol (RDP) - Oxygen3 24h-365d, by Panda Software (http://www.pandasoftware.com) Madrid, July 18, 2005 - Microsoft has released a special security advisory to warn of a vulnerability in Remote Desktop Services. According to this advisory, available at: http://www.microsoft.com/technet/security/advisory/904797.mspx, there is a denial of service vulnerability in Remote Desktop Protocol (RDP) when an attacker sends specially-crafted packets to an affected system. Microsoft has confirmed that the attack can only cause denial of service and cannot be used to take control of the system. This urgent notice warns users and administrators of the existence of this problem, as there are currently no updates to correct the problem. However it offers a series of workarounds to avoid the possibility of attack In order to successfully launch an attack, Terminal Services or the Remote Desktop function in Windows 2000, Windows XP or Windows Server 2003 would need to be enabled. The workaround recommended by Microsoft involves blocking port 3389 in the firewall, disabling Terminal Services or the Remote Desktop function if they are not necessary, securing Remote Desktop connections with IPsec policies or with VPN (Virtual Private Network) connections. NOTE: The address above may not show up on your screen as a single line. This would prevent you from using the link to access the web page. If this happens, just use the 'cut' and 'paste' options to join the pieces of the URL. --------------------------- The 5 viruses most frequently detected by Panda ActiveScan, Panda Software's free online scanner: 1)Sdbot.ftp; 2)Gaobot.gen; 3)Netsky.P; 4)Mhtredir.gen; 5)Codbot.BC. Fight back for stem cells http://www.StemPAC.com A politician is a man who will double cross that bridge when he comes to it http://stopviolence.care2.com/ Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You are posting as a guest. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.