MS03-034: NetBIOS Name Service Reply Information Leakage (824105) (credentialed check)

medium Nessus Plugin ID 16299

Synopsis

Random portions of memory may be disclosed thru the NetBIOS name service.

Description

The remote host is running a version of the NetBT name service that suffers from a memory disclosure problem.

An attacker could send a special packet to the remote NetBT name service, and the reply will contain random arbitrary data from the remote host memory. This arbitrary data may be a fragment from the web page the remote user is viewing, or something more serious like a POP password or anything else.

An attacker may use this flaw to continuously 'poll' the content of the memory of the remote host and might be able to obtain sensitive information.

Solution

Microsoft has released a set of patches for Windows NT, 2000, XP and 2003.

See Also

https://docs.microsoft.com/en-us/security-updates/SecurityBulletins/2003/ms03-034

Plugin Details

Severity: Medium

ID: 16299

File Name: smb_nt_ms03-034.nasl

Version: 1.33

Type: local

Agent: windows

Published: 2/3/2005

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 1.4

CVSS v2

Risk Factor: Low

Base Score: 3.3

Temporal Score: 2.4

Vector: CVSS2#AV:A/AC:L/Au:N/C:P/I:N/A:N

CVSS v3

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.8

Vector: CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:microsoft:windows

Required KB Items: SMB/MS_Bulletin_Checks/Possible

Exploit Ease: No known exploits are available

Patch Publication Date: 9/3/2003

Vulnerability Publication Date: 9/3/2003

Reference Information

CVE: CVE-2003-0661

BID: 8532

MSFT: MS03-034

MSKB: 824105