Skip to main content

Microsoft Windows RDP 'rdpwd.sys' Remote Kernel DoS

posted onAugust 10, 2005
by hitbsecnews

A denial of service vulnerability exists within the Remote Desktop Services which allows for an attacker to send a specially crafted RDP packet in order to crash the remote vulnerable system. This flaw specifically exists within the rdpwd.sys driver file which is used by the Remote Desktop Services. It appears that the problem exists because RDP does not release the memory it is using. The kernel can only use a certain amount of physical memory. So when RDP goes over its memory limit, it causes the crash.

Release Date:
August 9, 2005

Date Reported:
May 4, 2005

Severity:
Medium

Vendor:
Microsoft

Systems Affected:
Microsoft Windows 2000 Service Pack 4
Microsoft Windows XP Service Pack 1
Microsoft Windows XP Service Pack 2
Microsoft Windows XP Professional x64 Edition
Microsoft Windows Server 2003
Microsoft Windows Server 2003 for Itanium-based Systems
Microsoft Windows Server 2003 Service Pack 1
Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
Microsoft Windows Server 2003 x64 Edition

Source

Tags

Microsoft

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th