Oval Definition:oval:org.mitre.oval:def:478
Revision Date:2007-11-13Version:3
Title:MS Internet Security and Acceleration Server H.323 Buffer Overflow
Description:Buffer overflow in the H.323 filter of Microsoft Internet Security and Acceleration Server 2000 allows remote attackers to execute arbitrary code in the Microsoft Firewall Service via certain H.323 traffic, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2003-0819
Platform(s):Microsoft Windows 2000
Microsoft Windows Server 2003
Product(s):Microsoft Internet Security and Acceleration Server 2000
Definition Synopsis
  • Software section
  • ISA Server 2000 is installed
  • AND the version of h32fltr.dll is less than 3.0.1200.291
  • AND NOT the patch q816458 is installed
  • AND Configuration section
  • H.323 filter is enabled
  • AND Microsoft Firewall Service is not disabled
  • BACK