多个供应商IP数据包碎片拒绝服务漏洞

CNNVD-ID编号 CNNVD-200005-076
CVE编号 CVE-2000-0305
发布时间 2000-05-19
更新时间 2005-10-12
漏洞类型 资源管理错误
漏洞来源 Discovered by Dmitri Netes of the BindView HackerShield Development Team and publicized in a Microsoft Security Bulletin (MS00-029) on May 19, 2000.
危险等级 高危
威胁类型 远程
厂 商 microsoft

漏洞介绍

Windows 95, Windows 98, Windows 2000, Windows NT 4.0和Terminal Server系统存在漏洞。远程攻击者通过传送大量相同的IP数据包碎片导致拒绝服务漏洞,又称为jolt2 o或\"IP Fragment Reassembly\" 漏洞。

漏洞补丁

There are no known patches for Be/OS 5.0. Microsoft has released the following patches which rectify the issue. It should be noted that patches for Windows NT 4 on the Alpha platform are also available: Microsoft Windows 2000 Professional

Microsoft Windows 98 Microsoft Windows 2000 Advanced Server Microsoft Windows 95 Microsoft Windows 2000 Server Microsoft Windows NT Enterprise Server 4.0 Microsoft Windows NT Terminal Server 4.0 Microsoft Windows NT Workstation 4.0 SP6a Microsoft Windows NT Enterprise Server 4.0 SP3 Microsoft Windows NT Workstation 4.0 SP5 Microsoft Windows NT Enterprise Server 4.0 SP4 Microsoft Windows NT Workstation 4.0 SP2 Microsoft Windows NT Enterprise Server 4.0 SP5 Microsoft Windows NT Workstation 4.0 SP4 Microsoft Windows NT Terminal Server 4.0 SP2 Microsoft Windows NT Terminal Server 4.0 SP4 Microsoft Windows NT Server 4.0 SP6a Microsoft Windows NT Enterprise Server 4.0 SP1 Microsoft Windows NT Terminal Server 4.0 SP1 Microsoft Windows NT Enterprise Server 4.0 SP2 Microsoft Windows NT Server 4.0 SP3 Microsoft Windows NT Terminal Server 4.0 SP3 Microsoft Windows NT Workstation 4.0 SP6 Microsoft Windows NT Server 4.0 SP1 Microsoft Windows NT Workstation 4.0 Microsoft Windows NT Enterprise Server 4.0 SP6 Microsoft Windows NT Server 4.0 Microsoft Windows NT Terminal Server 4.0 SP6 Microsoft Windows NT Workstation 4.0 SP3 Microsoft Windows NT Enterprise Server 4.0 SP6a Microsoft Windows NT Server 4.0 SP6

参考网址

受影响实体

信息来源