http://news.com.com/2100-1002_3-5055759.html
1.Description:
There is a vulnerability in the part of RPC that deals with message exchange over TCP/IP. The failure results because of incorrect handling of malformed messages.
By sending a malformed messages to DCOM __RemoteGetClassObject interface,The RPC Service will be crashed,and all service and application depending on RPC service will be abnormal.
If attacker have an account ,he can hijack epmapper pipe and 135 port Privilege Escalation after RPC service is crash.
2.Affected Systems:Windows 2000 +SP3
Windows 2000 +SP4+
3.Proof of concept codes:
Code:
let's have none of that, shall we?