Oval Definition:oval:org.mitre.oval:def:3957
Revision Date:2008-03-24Version:46
Title:Animated Cursor Denial of Service (NT 4.0 Terminal Server)
Description:The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-1305
Platform(s):Microsoft Windows NT
Product(s):Windows Animated Cursor
Definition Synopsis
  • Windows NT Server 4.0, Terminal Server Edition is installed
  • Microsoft Windows NT is installed
  • AND this is an NT Terminal Server
  • AND the version of user32.dll is less than 4.0.1381.33630
  • AND NOT the patch kb891711 is installed
  • BACK