CVE-2011-1968

Description

The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP2 does not properly process packets in memory, which allows remote attackers to cause a denial of service (reboot) by sending crafted RDP packets triggering access to an object that (1) was not properly initialized or (2) is deleted, as exploited in the wild in 2011, aka Remote Desktop Protocol Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
71.962

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Windows XP (KB2570222)Windows
Security Update for Windows Server 2003 (KB2570222)Windows
Security Update for Windows XP x64 Edition (KB2570222)Windows
Security Update for Windows Server 2003 x64 Edition (KB2570222)Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234