Oval Definition:oval:org.mitre.oval:def:6107
Revision Date:2008-11-24Version:42
Title:Active Directory Overflow Vulnerability
Description:Active Directory in Microsoft Windows 2000 SP4 does not properly allocate memory for (1) LDAP and (2) LDAPS requests, which allows remote attackers to execute arbitrary code via a crafted request, aka "Active Directory Overflow Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2008-4023
Platform(s):Microsoft Windows 2000
Product(s):
Definition Synopsis
  • AND
  • Microsoft Windows 2000 SP4 or later is installed
  • AND Ntdsa.dll version is less than 5.0.2195.7178
  • the system is being used as AD
  • OR the system is being used as AD
  • BACK