CVE-2005-0045: High severity Microsoft Windows NT vulnerability
The Server Message Block (SMB) implementation for Windows NT 4.0, 2000, XP, and Server 2003 does not properly validate certain SMB packets, which allows remote attackers to execute arbitrary code via Transaction responses containing (1) Trans or (2) Trans2 commands, aka the "Server Message Block Vulnerability," and as demonstrated using Trans2 FINDFIRST2 responses with large file name length fields.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0045?
CVE-2005-0045 is considered critical due to its potential for remote code execution.
How do I fix CVE-2005-0045?
To mitigate CVE-2005-0045, apply the latest security updates released by Microsoft for the affected Windows versions.
What systems are affected by CVE-2005-0045?
CVE-2005-0045 affects Windows NT 4.0, 2000, XP, and Server 2003, specifically certain service packs.
Can CVE-2005-0045 be exploited over a network?
Yes, CVE-2005-0045 can be exploited remotely over the network by attackers sending specially crafted SMB packets.
Is there a patch available for CVE-2005-0045?
Yes, Microsoft has released patches to address the vulnerabilities outlined in CVE-2005-0045.