Preemptive Protection against Microsoft Terminal Server Denial of Service (MS12-020; CVE-2012-0152)
| Check Point Reference: | CPAI-2012-099 | |
| Date Published: | ||
| Preemptive Since: | ||
| Severity: | ||
| Source: | Microsoft Security Bulletin MS12-020 | |
| Industry Reference(s): | CVE-2012-0152 | |
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? Windows 7 for 32-bit Systems Windows 7 for 32-bit Systems Service Pack 1 Windows 7 for x64-based Systems Windows 7 for x64-based Systems Service Pack 1 Windows Server 2008 R2 for x64-based Systems Windows Server 2008 R2 for x64-based Systems Service Pack 1 Windows Server 2008 R2 for Itanium-based Systems Windows Server 2008 R2 for Itanium-based Systems Service Pack 1 |
||
| Vulnerability Description A denial of service vulnerability has been reported in Microsoft Remote Desktop Protocol. |
||
|
Update/Patch Available Apply patches from: MS12-020 |
|
|
Vulnerability Details The vulnerability is caused when the affected service processes a sequence of specially crafted packets. A remote attacker may exploit this issue by sending a sequence of specially crafted packets to the target. Successful exploitation could cause the service to crash, resulting in a denial of service condition. |
Protection Overview
IPS will detect and block the transferring of specially crafted packets.No update is required to address this vulnerability.Users are protected against this vulnerability if the SYN Attack protection has been activated and configured.
To configure the defense, select your product from the list below and follow the related protection steps.