CERT Vulnerability Note VU#250635 Microsoft Windows Server Message Block (SMB) fails to properly handle SMB_COM_TRANSACTION packets requesting NetServerEnum2 transaction http://www.kb.cert.org/vuls/id/250635
CERT Vulnerability Note VU#342243 Microsoft Windows Server Message Block (SMB) fails to properly handle SMB_COM_TRANSACTION packets requesting NetShareEnum transaction http://www.kb.cert.org/vuls/id/342243
CERT/CC Vulnerability Note VU#311619 Microsoft Windows Server Message Block (SMB) fails to properly handle SMB_COM_TRANSACTION packets requesting NetServerEnum3 transaction http://www.kb.cert.org/vuls/id/311619
CERT/CC Vulnerability Note VU#250635 Microsoft Windows Server Message Block (SMB) fails to properly handle SMB_COM_TRANSACTION packets requesting NetServerEnum2 transaction http://www.kb.cert.org/vuls/id/250635
CERT/CC Vulnerability Note 2002/08/27 追加 VU#342243 Microsoft Windows Server Message Block (SMB) fails to properly handle SMB_COM_TRANSACTION packets requesting NetShareEnum transaction http://www.kb.cert.org/vuls/id/342243
NetBSD Security Advisory 2002/09/19 追加 NetBSD-SA2002-013 Bug in NFS server code allows remote denial of service ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-013.txt.asc
shutdown はソケットの取り扱いが適切に行われていないことが原因で、セキュリティホールが存在します。攻撃者にこのセキュリティホールを利用された場合、リモートから DoS 攻撃を受ける可能性があります。
□ 関連情報:
NetBSD Security Advisory NetBSD-SA2002-017 shutdown(s,SHUT_RD) on TCP socket does not work as intended ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-017.txt.asc
CERT Vulnerability Note VU#243243 Entrust GetAccess does not validate user input thereby allowing users to read arbitrary files http://www.kb.cert.org/vuls/id/243243