VDB
GSD-2003-0352
GSD-2003-0352
PUBLISHED
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
Timeline
- Jul 17, 2003 CVE Published
- Jan 11, 2011 PoC Published
- May 29, 2018 PoC Published
- Feb 6, 2025 PoC Published
- Feb 23, 2025 PoC Published
- Apr 16, 2026 Security Advisory
References
- win-rpc-dcom-bo(12629) vdb
- oval:org.mitre.oval:def:296 vdb
- 8205 vdb
- 20030730 rpcdcom Universal offsets mailing-list
- 20030725 The Analysis of LSD's Buffer Overrun in Windows RPC Interface(code revised ) mailing-list
- 20030726 Re: The French BUGTRAQ (New Win RPC Exploit) mailing-list
- oval:org.mitre.oval:def:194 vdb
- 20030716 [LSD] Critical security vulnerability in Microsoft Operating Systems mailing-list
- http://www.xfocus.org/documents/200307/2.html url
- oval:org.mitre.oval:def:2343 vdb
- CA-2003-16 advisory
- VU#568148 advisory
- MS03-026 advisory
- CA-2003-19 advisory