Oval Definition:oval:org.mitre.oval:def:6788
Revision Date:2009-12-21Version:27
Title:Windows Server 2003 (64-Bit) Unchecked Buffer in NetDDE
Description:Network Dynamic Data Exchange (NetDDE) services for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows attackers to remotely execute arbitrary code or locally gain privileges via a malicious message or application that involves an "unchecked buffer," possibly a buffer overflow.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-0206
Platform(s):Microsoft Windows Server 2003
Product(s):NetDDE
Definition Synopsis
  • Windows Server 2003 is installed
  • AND a version of Windows for the ia64 architecture is installed
  • AND a vulnerable version of netdde.exe exists
  • the version of netdde.exe is less than 5.2.3790.184
  • OR the 64-bit WOW version of netdde.exe is less than 5.2.3790.193
  • AND a vulnerable version of nddenb32.dll exists
  • the version of nddenb32.dll is less than 5.2.3790.173
  • OR the 64-bit WOW version of nddenb32.dll is less than 5.2.3790.193
  • AND NOT the patch KB841533 is installed
  • BACK