Oval Definition:oval:org.mitre.oval:def:4282
Revision Date:2008-03-24Version:44
Title:DHCP Server Logging Vulnerability (Terminal Server)
Description:The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition, with DHCP logging enabled, does not properly validate the length of certain messages, which allows remote attackers to cause a denial of service (application crash) via a malformed DHCP message, aka "Logging Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0899
Platform(s):Microsoft Windows NT
Product(s):DHCP
Definition Synopsis
  • Microsoft Windows NT is installed
  • AND this is an NT Terminal Server
  • AND the version of Dhcpssvc.dll is less than 4.0.1381.33587
  • AND NOT the patch KB885249 is installed (Hotfix key)
  • BACK