Oval Definition:oval:org.cisecurity:def:882
Revision Date:2016-07-29Version:30
Title:Active Directory Denial of Service Vulnerability - CVE-2016-3226 (MS16-081)
Description:Active Directory in Microsoft Windows Server 2008 R2 SP1 and Server 2012 Gold and R2 allows remote authenticated users to cause a denial of service (service hang) by creating many machine accounts, aka "Active Directory Denial of Service Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2016-3226
Platform(s):Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Product(s):
Definition Synopsis
  • Microsoft Server 2008 R2 is installed + file version
  • Microsoft Windows Server 2008 R2 x64 Service Pack 1 is installed
  • AND Check if ntdsai.dll version is less than 6.1.7601.23445
  • OR Microsoft Windows Server 2012 R2 is installed + file version
  • Microsoft Windows Server 2012 R2 is installed
  • AND Check if ntdsai.dll version is less than 6.3.9600.18331
  • OR Microsoft Windows Server 2012 is installed + file version
  • Microsoft Windows Server 2012 (64-bit) is installed
  • AND Check if ntdsai.dll version is less than 6.2.9200.21856
  • BACK