CVE-2010-2742

Description

The Netlogon RPC Service in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, and R2, when the domain controller role is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and reboot) via a crafted RPC packet, aka Netlogon RPC Null dereference DOS Vulnerability.

Risk Information

Base Score
6.5
MODERATE
Vector
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
55.735

Associated Vulnerability

VulnerabilityOS Platform
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2003 (KB2207559)Windows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2008 (KB2207559) x86 based systemsWindows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2008 (KB2207559) x86 based systems for SP2Windows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2003 x64 Edition (KB2207559)Windows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2008 x64 Edition (KB2207559)Windows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2008 x64 Edition (KB2207559) for SP2Windows
ms10-101: vulnerability in windows netlogon service could allow denial of service for Windows Server 2008 R2 x64 Edition (KB2207559)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-9636Security Update for Windows Server 2008 (KB2207559)
PATCH-9637Security Update for Windows Server 2008 (KB2207559)
PATCH-9639Security Update for Windows Server 2008 x64 Edition (KB2207559)
PATCH-9640Security Update for Windows Server 2008 x64 Edition (KB2207559)
PATCH-9641Security Update for Windows Server 2008 R2 x64 Edition (KB2207559)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234