VDB

CVE-2003-0813

CVE-2003-0813 PUBLISHED CVSS 5.099999904632568 MEDIUM

A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch installed allows remote attackers to cause a denial of service (crash or reboot) by causing two threads to process the same RPC request, which causes one thread to use memory after it has been freed, a different vulnerability than CVE-2003-0352 (Blaster/Nachi), CVE-2003-0715, and CVE-2003-0528, and as demonstrated by certain exploits against those vulnerabilities.

EPSS 54.96% · 98.1th percentile

Risk Scores

CVSS 2.0
5.099999904632568
EPSS Score
54.96%
98.1th percentile

Affected Products

VendorProductVersions
microsoftwindows_nt4.0, 4.0
microsoftwindows_xp
n/an/a*
microsoftwindows_2000
microsoftwindows_98
microsoftwindows_server_2003

Timeline

  • Oct 15, 2003 CVE Published
  • Sep 23, 2010 PoC Published
  • Feb 4, 2022 EPSS Score
  • Apr 29, 2022 CVE Updated
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 22, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›