home *** CD-ROM | disk | FTP | other *** search
- Microsoft's Network Monitor susceptible to Denial of Service attack.
-
- Microsoft's Network Monitor is a tool provided by Microsoft with its Windows NT Server and System Management
- Server (SMS).
- The tool gives administrators the ability to analyze and maintain the integrity of the network, by providing a tool that
- allows to identify network traffic patterns, to test the network, and to quickly pinpoint network trouble.
- This tool was found to be vulnerable to attack which stops the Network Monitor from showing the captured data
- correctly and even crash the Network Monitor while trying to show the captured data.
-
- By sending a NetBIOS session request from a machine whose NetBIOS Scope ID is 190 or more characters, the
- Network Monitor can be crashed when the capture process is stopped and the results are viewed. The problem
- actually stems from the NetBIOS parser "netbios.dll", not being able to handle the packet when it tries to interpret
- its contents.
-