MS-RPC: NT LanMan RPCSS Denial of Service

This signature detects attempts to exploit a known vulnerability against Microsoft RPC. A successful attack can result in a denial-of-service condition.

Extended Description

Microsoft Windows is prone to a remote denial-of-service vulnerability because it fails to adequately handle specially crafted RPC packets. Attackers can exploit this issue to cause an affected computer to stop responding or to restart. Successful attacks will deny service to legitimate users.

Affected Products

Avaya messaging_application_server,Hp storage_management_appliance

References

BugTraq: 25974

CVE: CVE-2007-2228

Short Name
MS-RPC:NTLM-RPCSS-DOS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
MS-RPC
Keywords
CVE-2007-2228 Denial LanMan NT RPCSS Service bid:25974 of
Release Date
10/09/2007
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3724
False Positive
Unknown
Vendors

Nortel_networks

Hp

Microsoft

Avaya

CVSS Score

7.8

Found a potential security threat?