COMMAND
Media
SYSTEMS AFFECTED
Microsoft Windows Media Services 4.0, 4.1
PROBLEM
Following is based on a Microsoft Security Bulletin (MS00-064).
If a client sends a particular type of malformed request to a
Windows Media server, it could induce a race condition. Once the
server has been put into such a state, subsequent requests - even
ones that would normally be legitimate - could cause the Windows
Media Unicast Service to fail. If this happened, any ongoing
sessions would be lost, and the server would stop providing
unicast streaming media services.
An affected server could be put back into service by restarting
the Unicast Service. The vulnerability would not cause any data
loss, nor would it enable the malicious user to usurp any
administrative privileges on the machine.
SOLUTION
Patch availability:
- Microsoft Windows Media Services 4.1: http://www.microsoft.com/Downloads/Release.asp?ReleaseID=24167