Short Name |
MS-RPC:DCE-RPC-UUID-BIND |
---|---|
Severity |
Minor |
Recommended |
No |
Category |
MS-RPC |
Keywords |
UUID Bind |
Release Date |
2003/10/15 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to bind to the DCE-RPC UUID. Because the DCE-RPC UUID has many known vulnerabilities, this can indicate that an attacker is attempting to attack your network. NOTE: If your network environment has valid DCE-RPC traffic, this signature can produce false positives.
An Activation function in the RPCSS Service involved with DCOM activation for Microsoft Windows 2000, XP, and 2003 allows remote attackers to cause a denial of service (memory consumption) via an activation request with a large length field.