Executive Summary

Informations
Name CVE-2003-0003 First vendor Publication 2003-02-07
Vendor Cve Last vendor Modification 2019-04-30

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score 7.5 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Buffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code via an RPC call to the service containing certain parameter information.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0003

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:103
 
Oval ID: oval:org.mitre.oval:def:103
Title: Windows RPC Locator Service Buffer Overflow
Description: Buffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code via an RPC call to the service containing certain parameter information.
Family: windows Class: vulnerability
Reference(s): CVE-2003-0003
Version: 1
Platform(s): Microsoft Windows NT
Product(s): Locator service
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 2
Os 4
Os 2
Os 32
Os 5

Open Source Vulnerability Database (OSVDB)

Id Description
7117 Microsoft Windows RPC Locator Remote Overflow

A remote overflow exists in Windows. The RPC Locator service fails to validate search requests resulting in a stack overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.

Snort® IPS/IDS

Date Description
2014-01-10 DCERPC NCADG-IP-UDP v4 locator nsi_binding_lookup_begin overflow attempt
RuleID : 4825 - Revision : 7 - Type : NETBIOS
2014-01-10 DCERPC NCADG-IP-UDP v4 locator nsi_binding_lookup_begin little endian overflo...
RuleID : 4824 - Revision : 7 - Type : NETBIOS
2014-01-10 DCERPC NCADG-IP-UDP locator nsi_binding_lookup_begin overflow attempt
RuleID : 4823 - Revision : 7 - Type : NETBIOS
2014-01-10 DCERPC NCADG-IP-UDP locator nsi_binding_lookup_begin little endian overflow a...
RuleID : 4822 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin unicode overflow attempt
RuleID : 4821 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin unicode little endian overflow att...
RuleID : 4820 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin unicode little endian andx overflo...
RuleID : 4819 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin unicode andx overflow attempt
RuleID : 4818 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin overflow attempt
RuleID : 4817 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin little endian overflow attempt
RuleID : 4816 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin little endian andx overflow attempt
RuleID : 4815 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin andx overflow attempt
RuleID : 4814 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX unicode overflow attempt
RuleID : 4813 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX unicode little endian ov...
RuleID : 4812 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX unicode little endian an...
RuleID : 4811 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX unicode andx overflow at...
RuleID : 4810 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX overflow attempt
RuleID : 4809 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX little endian overflow a...
RuleID : 4808 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX little endian andx overf...
RuleID : 4807 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS v4 locator nsi_binding_lookup_begin WriteAndX andx overflow attempt
RuleID : 4806 - Revision : 5 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin unicode overflow attempt
RuleID : 4805 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin unicode little endian overflow attempt
RuleID : 4804 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin unicode little endian andx overflow a...
RuleID : 4803 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin unicode andx overflow attempt
RuleID : 4802 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin overflow attempt
RuleID : 4801 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin little endian overflow attempt
RuleID : 4800 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin little endian andx overflow attempt
RuleID : 4799 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin andx overflow attempt
RuleID : 4798 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX unicode overflow attempt
RuleID : 4797 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX unicode little endian overf...
RuleID : 4796 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX unicode little endian andx ...
RuleID : 4795 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX unicode andx overflow attempt
RuleID : 4794 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX overflow attempt
RuleID : 4793 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX little endian overflow attempt
RuleID : 4792 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX little endian andx overflow...
RuleID : 4791 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB-DS locator nsi_binding_lookup_begin WriteAndX andx overflow attempt
RuleID : 4790 - Revision : 7 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin unicode overflow attempt
RuleID : 4789 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin unicode little endian overflow attempt
RuleID : 4788 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin unicode little endian andx overflow a...
RuleID : 4787 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin unicode andx overflow attempt
RuleID : 4786 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin overflow attempt
RuleID : 4785 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin little endian overflow attempt
RuleID : 4784 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin little endian andx overflow attempt
RuleID : 4783 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin andx overflow attempt
RuleID : 4782 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX unicode overflow attempt
RuleID : 4781 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX unicode little endian overf...
RuleID : 4780 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX unicode little endian andx ...
RuleID : 4779 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX unicode andx overflow attempt
RuleID : 4778 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX overflow attempt
RuleID : 4777 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX little endian overflow attempt
RuleID : 4776 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX little endian andx overflow...
RuleID : 4775 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB v4 locator nsi_binding_lookup_begin WriteAndX andx overflow attempt
RuleID : 4774 - Revision : 9 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin unicode overflow attempt
RuleID : 4773 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin unicode little endian overflow attempt
RuleID : 4772 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin unicode little endian andx overflow attempt
RuleID : 4771 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin unicode andx overflow attempt
RuleID : 4770 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin overflow attempt
RuleID : 4769 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin little endian overflow attempt
RuleID : 4768 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin little endian andx overflow attempt
RuleID : 4767 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin andx overflow attempt
RuleID : 4766 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX unicode overflow attempt
RuleID : 4765 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX unicode little endian overflow...
RuleID : 4764 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX unicode little endian andx ove...
RuleID : 4763 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX unicode andx overflow attempt
RuleID : 4762 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX overflow attempt
RuleID : 4761 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX little endian overflow attempt
RuleID : 4760 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX little endian andx overflow at...
RuleID : 4759 - Revision : 8 - Type : NETBIOS
2014-01-10 SMB locator nsi_binding_lookup_begin WriteAndX andx overflow attempt
RuleID : 4758 - Revision : 8 - Type : NETBIOS
2014-01-10 DCERPC NCACN-IP-TCP v4 locator nsi_binding_lookup_begin overflow attempt
RuleID : 4757 - Revision : 5 - Type : NETBIOS
2014-01-10 DCERPC NCACN-IP-TCP v4 locator nsi_binding_lookup_begin little endian overflo...
RuleID : 4756 - Revision : 5 - Type : NETBIOS
2014-01-10 DCERPC NCADG-IP-UDP locator nsi_binding_lookup_begin overflow attempt
RuleID : 4755 - Revision : 12 - Type : OS-WINDOWS
2014-01-10 DCERPC NCACN-IP-TCP locator nsi_binding_lookup_begin overflow attempt
RuleID : 4754 - Revision : 12 - Type : OS-WINDOWS

Nessus® Vulnerability Scanner

Date Description
2003-01-23 Name : Arbitrary code can be executed on the remote host.
File : smb_nt_ms03-001.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
BID http://www.securityfocus.com/bid/6666
BUGTRAQ http://marc.info/?l=bugtraq&m=104394414713415&w=2
CERT http://www.cert.org/advisories/CA-2003-03.html
CERT-VN http://www.kb.cert.org/vuls/id/610986
MS https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03...
NTBUGTRAQ http://marc.info/?l=ntbugtraq&m=104393588232166&w=2
OVAL https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.ova...
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/11132

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
Date Informations
2024-02-02 01:02:13
  • Multiple Updates
2024-02-01 12:01:25
  • Multiple Updates
2023-09-05 12:02:07
  • Multiple Updates
2023-09-05 01:01:17
  • Multiple Updates
2023-09-02 12:02:08
  • Multiple Updates
2023-09-02 01:01:17
  • Multiple Updates
2023-08-12 12:02:35
  • Multiple Updates
2023-08-12 01:01:17
  • Multiple Updates
2023-08-11 12:02:12
  • Multiple Updates
2023-08-11 01:01:18
  • Multiple Updates
2023-08-06 12:02:02
  • Multiple Updates
2023-08-06 01:01:18
  • Multiple Updates
2023-08-04 12:02:06
  • Multiple Updates
2023-08-04 01:01:18
  • Multiple Updates
2023-07-14 12:02:05
  • Multiple Updates
2023-07-14 01:01:18
  • Multiple Updates
2023-03-29 01:02:03
  • Multiple Updates
2023-03-28 12:01:23
  • Multiple Updates
2022-10-11 12:01:51
  • Multiple Updates
2022-10-11 01:01:11
  • Multiple Updates
2021-05-04 12:01:56
  • Multiple Updates
2021-04-22 01:02:06
  • Multiple Updates
2020-05-23 00:15:20
  • Multiple Updates
2019-05-09 12:01:17
  • Multiple Updates
2019-04-30 21:19:17
  • Multiple Updates
2018-10-13 00:22:26
  • Multiple Updates
2018-01-11 00:21:18
  • Multiple Updates
2017-11-16 21:21:11
  • Multiple Updates
2017-10-10 09:23:25
  • Multiple Updates
2016-10-18 12:01:08
  • Multiple Updates
2016-08-31 12:00:45
  • Multiple Updates
2016-06-28 15:01:34
  • Multiple Updates
2016-04-26 12:29:24
  • Multiple Updates
2014-02-17 10:25:41
  • Multiple Updates
2014-01-19 21:21:53
  • Multiple Updates
2013-05-11 11:49:58
  • Multiple Updates