Oval Definition:
oval:org.mitre.oval:def:1027
Revision Date
:
2016-02-19
Version
:
43
Title
:
Windows 2000 DirectPlay Denial of Service
Description
:
IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2003 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed packet.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2004-0202
Platform(s)
:
Microsoft Windows 2000
Product(s)
:
Microsoft DirectPlay
Definition Synopsis
Windows 2000 is installed
AND
Vulnerable versions of DirectX
Unpatched DirectX 7.0
DirectX 7.0x Installed
AND
File %windir%\system32\dplayx.dll version is less than 5.0.2195.6927
AND
NOT
the patch kb839643 is installed
OR
Unpatched DirectX 8.0x
DirectX 8.0x Installed
AND
File %windir%\system32\dplayx.dll version is less than 5.0.2258.410
AND
NOT
Patch DirectX80-KB839643-x86-ENU Installed
OR
Unpatched DirectX 8.1x
DirectX 8.1 Installed
AND
File %windir%\system32\dplayx.dll version is less than 5.1.2600.891
AND
NOT
Patch DirectX81-KB839643-x86-ENU Installed
OR
Unpatched DirectX 8.2x
DirectX 8.2 Installed
AND
File %windir%\system32\dplayx.dll version is less than 5.2.3677.144
AND
NOT
Patch DirectX82-KB839643-x86-ENU Installed
OR
Unpatched DirectX 9.0x
DirectX 9.0x Installed
AND
File %windir%\system32\dplayx.dll version is less than 5.3.0.903
AND
NOT
Patch DirectX90-KB839643-x86-ENU Installed
BACK