Oval Definition:oval:org.mitre.oval:def:951
Revision Date:2007-05-23Version:42
Title:Windows 2000 SSL PCT Handshake Vulnerability
Description:Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as used in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via PCT 1.0 handshake packets.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2003-0719
Platform(s):Microsoft Windows 2000
Product(s):Private Communications Transport (PCT)
Definition Synopsis
  • Software section
  • Windows 2000 is installed
  • AND the version of schannel.dll is less than 5.1.2195.6899
  • AND NOT the patch kb835732 is installed
  • AND Configuration section
  • SSL is enabled
  • AND NOT PCT support is disabled
  • BACK