Re: [VulnDiscuss] Windows RPC Service DoS

Chris Wysopal <[email protected]>
Newsgroups gmane.comp.security.vulnerabilities.watch.general
Message-ID <[email protected]>
On Wed, 26 Mar 2003, Dave Aitel wrote:

> Does this also address the vulnerability in the named pipes handler
> Immunity released with SPIKE 2.8 (also known as "plonk")?

I don't know the answer to that. But as it is a seperate vulnerability I
would not expect it to be bundled in silently in a patch that purports to
address CAN-2002-1561.  If any readers test plonk against the patch in
bulletin MS03-010 please send your results to the list.

-Chris

> Dave Aitel
> CFO
> Immunity, Inc.
> http://www.immunitysec.com/CANVAS/ "Hack like you were in the movies."
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.