CVE-2003-0533
Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via a packet that causes the DsRolerUpgradeDownlevelServer function to create long debug entries for the DCPROMO.LOG log file, as exploited by the Sasser worm.
- Affected products
- Active Directory, Local Security Authority Subsystem Service, Netmeeting, Windows 2000, Windows 98, Windows Me, Windows Nt 4.0, Windows Server 2003
- Microsoft Netmeeting
- All versions
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 85.5% (100th percentile)
- NVD status
- Modified
- Published
- 2004-04-16
CVE-2003-0533 at NVD
10 known exploits for CVE-2003-0533
Proof-of-concept code and exploit modules indexed by Sploitus
Microsoft LSASS Service - DsRolerUpgradeDownlevelServer Overflow (MS04-011) (Metasploit)
Microsoft LSASS Service DsRolerUpgradeDownlevelServer Overflow
MS04-011 Microsoft LSASS Service DsRolerUpgradeDownlevelServer Overflow
Windows LSASS buffer overflow
Windows LSASS buffer overflow
Windows LSASS buffer overflow
Windows LSASS buffer overflow
Immunity Canvas: MS04_011_LSASS
Microsoft Windows XP/2000 - 'Lsasrv.dll' Remote Universal (MS04-011)
Microsoft Windows - 'Lsasrv.dll' RPC Remote Buffer Overflow (MS04-011)