Oval Definition:oval:org.mitre.oval:def:3120
Revision Date:2011-05-16Version:49
Title:Windows 2000 Unchecked Buffer in NetDDE (Test 1)
Description:Network Dynamic Data Exchange (NetDDE) services for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows attackers to remotely execute arbitrary code or locally gain privileges via a malicious message or application that involves an "unchecked buffer," possibly a buffer overflow.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0206
Platform(s):Microsoft Windows 2000
Product(s):NetDDE
Definition Synopsis
  • Windows 2000 (sp5 or earlier) is installed
  • Windows 2000 is installed
  • AND NOT Win2K/XP/2003 service pack 5 (or later) is installed
  • AND the version of netdde.exe is less than 5.0.2195.6952
  • AND the version of nddenb32.dll is less than 5.0.2195.6922
  • AND NOT the patch KB841533 is installed
  • BACK