MS-RPC: Frag Length Too Small

This protocol anomaly is a Microsoft Remote Procedure Call (MSRPC) fragment length that is less than the common header length. Detecting this anomaly can indicate a malicious user might be attacking your system.

Extended Description

An anomaly exists if an MSRPC message fragment length is less than the TCP packet header length, and should be detected.

Short Name
MS-RPC:ERR:FRAG-LEN-TOO-SMALL
Severity
Major
Recommended
True
Recommended Action
None
Category
MS-RPC
Release Date
02/24/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?