Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

Microsoft Windows Terminal Services vulnerabilities
From: Ben Cohen <bc () skygate co uk>
Date: Wed, 18 Sep 2002 12:39:03 +0100 (BST)

I have just installed Windows XP Pro SP1 and found that the two
vulnerabilities announced earlier in the week have been addressed.  


"Microsoft Windows XP Remote Desktop denial of service" is fixed.

"Microsoft Windows Remote Desktop Protocol checksum and keystroke" is
partially fixed:  Microsoft have altered the protocol to revert to the RDP
4.0 style input packet.  This is a hack rather than a good solution
because it doesn't fix the checksum leakage problem, and it increases
bandwidth again.  Unfortunately, the proper solution would require the 
encryption layer of the protocol to be redesigned.


Ben Cohen
Software Developer
Skygate Technology Ltd.


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]