Oval Definition:oval:org.mitre.oval:def:2689
Revision Date:2013-09-02Version:23
Title:Server 2003 Large Window Size TCP RST Denial of Service
Description:TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0230
Platform(s):Microsoft Windows Server 2003
Product(s):
Definition Synopsis
  • Windows Server 2003 is installed
  • AND 32-bit version of Windows or 64-bit (itanium architecture) version of Windows is installed
  • 32-Bit version of Windows is installed
  • OR a version of Windows for the ia64 architecture is installed
  • AND NOT Win2K/XP/2003 is patched
  • AND the version of Tcpip.sys is less than 5.2.3790.336
  • AND NOT the patch KB893066 is installed
  • BACK