MS.DirectPlay.DoS
Description
This indicates an attack attempt against a Denial of Service vulnerability in Microsoft DirectX DirectPlay.
The vulnerability is caused by insufficient input validation of incoming network data. It allows a remote attacker to cause a DoS condition by sending malformed "DirectPlay" packets. The application must be restarted to resume normal status.
Affected Products
Microsoft Windows XP Professional SP1
Microsoft Windows XP Professional
Microsoft Windows XP Home SP1
Microsoft Windows XP Home
Microsoft Windows XP 64-bit Edition Version 2003 SP1
Microsoft Windows XP 64-bit Edition Version 2003
Microsoft Windows XP 64-bit Edition SP1
Microsoft Windows XP 64-bit Edition
Microsoft Windows Server 2003 Web Edition
Microsoft Windows Server 2003 Standard Edition
Microsoft Windows Server 2003 Enterprise Edition Itanium
Microsoft Windows Server 2003 Enterprise Edition
Microsoft Windows Server 2003 Datacenter Edition Itanium
Microsoft Windows Server 2003 Datacenter Edition
Microsoft Windows ME
Microsoft Windows 98SE
Microsoft Windows 98
Microsoft Windows 2000 Terminal Services SP4
Microsoft Windows 2000 Terminal Services SP3
Microsoft Windows 2000 Terminal Services SP2
Microsoft Windows 2000 Server SP4
Microsoft Windows 2000 Server SP3
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Professional SP4
Microsoft Windows 2000 Professional SP3
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Datacenter Server SP4
Microsoft Windows 2000 Datacenter Server SP3
Microsoft Windows 2000 Datacenter Server SP2
Microsoft DirectX 9.0b
Microsoft DirectX 9.0 a
Microsoft DirectX 8.2
Microsoft DirectX 8.1 b
Microsoft DirectX 8.1 a
Microsoft DirectX 8.1
Microsoft DirectX 8.0 a
Microsoft DirectX 8.0
Microsoft DirectX 7.1
Microsoft DirectX 7.0 a
Microsoft DirectX 7.0
Impact
Denial of Service: Remote attackers can crash vulnerable systems.
Recommended Actions
Apply patch, available from the web site.
Microsoft DirectX 9.0 a
Microsoft Update for the IDirectPlay4 API of Microsoft for DirectX 9.0x (DirectPlay) (KB839643)
http://download.microsoft.com/download/5/8/4/584e3b1c-37ed-4845-8c04-232858b468e9/DirectX90-KB839643-x86-ENU.EXE
Microsoft DirectX 8.1 b
Microsoft KB839643 - Update for the IDirectPlay4 API of Microsoft DirectPlay.
http://download.microsoft.com/download/1/9/5/195fbc86-be68-419f-a3af-e485ceaf39f1/DirectX81-KB839643-x86-ENU.EXE
Microsoft Windows Server 2003 Datacenter Edition
Microsoft Security Update for Windows Server 2003 (KB839643)
http://download.microsoft.com/download/3/a/9/3a996897-848d-479d-933f-f7f13776db02/WindowsServer2003-KB839643-x86-ENU.EXE
Microsoft DirectX 8.1 a
Microsoft KB839643 - Update for the IDirectPlay4 API of Microsoft DirectPlay.
http://download.microsoft.com/download/1/9/5/195fbc86-be68-419f-a3af-e485ceaf39f1/DirectX81-KB839643-x86-ENU.EXE
Microsoft DirectX 8.2
Microsoft Update for the IDirectPlay4 API of Microsoft for DirectX 8.2 (DirectPlay) (KB839643)
http://download.microsoft.com/download/e/3/f/e3f2f45d-0915-47d3-8e86-3404a558c2ba/DirectX82-KB839643-x86-ENU.EXE
Microsoft DirectX 8.0
Microsoft Update for the IDirectPlay4 API of Microsoft DirectX 8.0x (DirectPlay) (KB839643)
http://download.microsoft.com/download/7/8/7/7871f202-2396-454c-bc76-b9665b079891/DirectX80-KB839643-x86-ENU.EXE
Microsoft Windows Server 2003 Enterprise Edition
Microsoft Security Update for Windows Server 2003 (KB839643)
http://download.microsoft.com/download/3/a/9/3a996897-848d-479d-933f-f7f13776db02/WindowsServer2003-KB839643-x86-ENU.EXE
Microsoft Windows Server 2003 Web Edition
Microsoft Security Update for Windows Server 2003 (KB839643)
http://download.microsoft.com/download/3/a/9/3a996897-848d-479d-933f-f7f13776db02/WindowsServer2003-KB839643-x86-ENU.EXE
Microsoft DirectX 8.0 a
Microsoft Update for the IDirectPlay4 API of Microsoft DirectX 8.0x (DirectPlay) (KB839643)
http://download.microsoft.com/download/7/8/7/7871f202-2396-454c-bc76-b9665b079891/DirectX80-KB839643-x86-ENU.EXE
Microsoft DirectX 9.0b
Microsoft Update for the IDirectPlay4 API of Microsoft for DirectX 9.0x (DirectPlay) (KB839643)
http://download.microsoft.com/download/5/8/4/584e3b1c-37ed-4845-8c04-232858b468e9/DirectX90-KB839643-x86-ENU.EXE
Microsoft DirectX 8.1
Microsoft KB839643 - Update for the IDirectPlay4 API of Microsoft DirectPlay.
http://download.microsoft.com/download/1/9/5/195fbc86-be68-419f-a3af-e485ceaf39f1/DirectX81-KB839643-x86-ENU.EXE
Microsoft Windows Server 2003 Standard Edition
Microsoft Security Update for Windows Server 2003 (KB839643)
http://download.microsoft.com/download/3/a/9/3a996897-848d-479d-933f-f7f13776db02/WindowsServer2003-KB839643-x86-ENU.EXE
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |