First published: Thu Oct 06 2005(Updated: )
Microsoft Windows 2000 before Update Rollup 1 for SP4 records Event ID 1704 to indicate that Group Policy security settings were successfully updated, even when the processing fails such as when Ntuser.pol cannot be accessed, which could cause system administrators to believe that the system is compliant with the specified settings.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | =sp4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3171 is considered to have a moderate severity level due to its potential impact on system administration and the incorrect indication of Group Policy updates.
To fix CVE-2005-3171, ensure that your system is updated with Update Rollup 1 for Windows 2000 Service Pack 4.
CVE-2005-3171 affects Microsoft Windows 2000 systems that are running Service Pack 4.
The consequence of CVE-2005-3171 is that system administrators may mistakenly believe that Group Policy settings have been successfully applied when, in fact, they have not.
There are no specific workarounds for CVE-2005-3171 besides applying the necessary updates and patches from Microsoft.