Oval Definition:oval:org.mitre.oval:def:4791
Revision Date:2011-05-16Version:21
Title:Win2k Large Window Size TCP RST Denial of Service
Description:TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0230
Platform(s):Microsoft Windows 2000
Product(s):
Definition Synopsis
  • Windows 2000 is installed
  • AND Win2K/XP/2003 service pack 4 (or earlier) is installed
  • AND the version of Tcpip.sys is less than 5.0.2195.7035
  • AND NOT the patch KB893066 is installed
  • BACK