xfocus logo xfocus title
首页 焦点原创 安全文摘 安全工具 安全漏洞 焦点项目 焦点论坛 关于我们
English Version

Denicomp rshd和rexecd存在拒绝服务攻击


发布时间:2001-05-10
更新时间:2001-05-10
严重程度:
威胁程度:远程拒绝服务
错误类型:输入验证错误
利用方式:服务器模式

受影响系统
Denicomp Winsock RSHD/95 2.18 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/95 2.17 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/95 2.16 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/95 2.15 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/95 2.14 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/95 2.13 (Win 9x)
   - Microsoft Windows 98
   - Microsoft Windows 95
Denicomp Winsock RSHD/NT 2.18.00 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.7 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.7 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.6 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.5 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.4 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.3 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.2 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.1 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17.07 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.17 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.16 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.16 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.15 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.15 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.14 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.14 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.13 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.13 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.12 (Intel)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
Denicomp Winsock RSHD/NT 2.12 (Alpha)
   - Microsoft Windows NT 4.0
   - Microsoft Windows NT 3.5.1
   - Microsoft Windows 2000
详细描述
rsh和rexecd在UNXI系统中允许非交互运行程序,其中需要对方机器上运行rshd
和rexecd,并监听通过TCP/IP传过来的命令,一旦连接,便检查合法访问性并执行
程序。Denicomp是一个RSHD 移植到WINNT和9X上的版本,如果一段超长的字符串
发送到监听断口,服务就会停止,可以导致不响应任何连接。

测试代码
尚无

解决方案
尚无

相关信息