Microsoft Windows Remote Unauthenticated Denial of Service in ASP.NET Vulnerability( 12 August 2009 )
Last Update Date:
28 Jan 2011
Release Date:
12 Aug 2009
5311
Views
RISK: Medium Risk
A Denial of Service vulnerability exists in the way ASP.NET manages request scheduling. An attacker could exploit this vulnerability by creating specially crafted anonymous HTTP requests that would cause the affected Web server to become non-responsive until the associated application pool is restarted.
Impact
- Denial of Service
System / Technologies affected
- Windows Vista
- Windows Server 2008
- Microsoft .NET Framework 2.0
- Microsoft .NET Framework 3.5
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Download locations for this patch
- Windows Vista
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972591)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972592) - Windows Vista Service Pack 1
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972593)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972594) - Windows Vista x64 Edition
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972591)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972592) - Windows Vista x64 Edition Service Pack 1
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972593)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972594) - Windows Server 2008 for 32-bit Systems
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972593)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972594) - Windows Server 2008 for x64-based Systems
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972593)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972594) - Windows Server 2008 for Itanium-based Systems
- Microsoft .NET Framework 2.0 Service Pack 1 and Microsoft .NET Framework 3.5 (KB972593)
- and Microsoft .NET Framework 2.0 Service Pack 2 and Microsoft .NET Framework 3.5 Service Pack 1 (KB972594)
Vulnerability Identifier
Source
Related Link
Share with