Oval Definition:oval:org.mitre.oval:def:1908
Revision Date:2011-05-16Version:45
Title:MSDTC Invalid Memory Access Vulnerability (XP,SP1)
Description:Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllocate function, aka the MSDTC Invalid Memory Access Vulnerability.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-0034
Platform(s):Microsoft Windows XP
Product(s):
Definition Synopsis
  • Windows XP is installed
  • AND Win2K/XP/2003/Vista service pack 1 is installed
  • AND NOT a version of Windows for the ia64 architecture is installed
  • AND the version of Msdtctm.dll is less than 2001.12.4414.65
  • BACK