发布时间 :2003-10-20 00:00:00
修订时间 :2008-09-05 16:35:08

[原文]Various Distributed Computing Environment (DCE) implementations, including HP OpenView, allow remote attackers to cause a denial of service (process hang or termination) via certain malformed inputs, as triggered by attempted exploits against the vulnerabilities CVE-2003-0352 or CVE-2003-0605, such as the Blaster/MSblast/LovSAN worm.


        多种分布式计算环境(DCE)的安装启用,包含HP OpenView存在漏洞。远程攻击者借助某些畸形输入导致服务拒绝(程序挂起或者终止),正如利用CVE-2003-0352或者CVE-2003-0605触发该漏洞,如Blaster/MSblast/LovSAN蠕虫。

- CVSS (基础分值)

CVSS分值: 5 [中等(MEDIUM)]
机密性影响: NONE [对系统的机密性无影响]
完整性影响: NONE [不会对系统完整性产生影响]
可用性影响: PARTIAL [可能会导致性能下降或中断资源访问]
攻击复杂度: LOW [漏洞利用没有访问限制 ]
攻击向量: [--]
身份认证: NONE [漏洞利用无需身份认证]

- CPE (受影响的平台与产品)


- OVAL (用于检测的技术细节)


- 官方数据库链接
(官方数据源) MITRE
(官方数据源) NVD
(官方数据源) CNNVD

- 其它链接及资源
(UNKNOWN)  SGI  20030902-01-P

- 漏洞信息

中危 未知
2003-10-20 00:00:00 2005-10-31 00:00:00
        多种分布式计算环境(DCE)的安装启用,包含HP OpenView存在漏洞。远程攻击者借助某些畸形输入导致服务拒绝(程序挂起或者终止),正如利用CVE-2003-0352或者CVE-2003-0605触发该漏洞,如Blaster/MSblast/LovSAN蠕虫。

- 公告与补丁


- 漏洞信息 (F31723)

HexView Security Advisory 2003-09-02.01 (PacketStormID:F31723)
2003-09-26 00:00:00
advisory,denial of service

SGI Security Advisory 20030902-01-P - It has been reported that certain Microsoft RPC scanning can cause the DCE daemon dced to abort, causing a denial of service vulnerability.


                           SGI Security Advisory

  Title     : DCE 1.2.2c Denial of Service Vulnerability
  Number    : 20030902-01-P
  Date      : September, 26 2003
  Reference : CVE CAN-2003-0746
  Reference : SGI BUG 897593
  Fixed in  : Patches 5313/5314 for DCE 1.2.2c

SGI provides this information freely to the SGI user community for its
consideration, interpretation, implementation and use.  SGI recommends that
this information be acted upon as soon as possible.

SGI provides the information in this Security Advisory on an "AS-IS" basis
only, and disclaims all warranties with respect thereto, express, implied
or otherwise, including, without limitation, any warranty of merchantability
or fitness for a particular purpose.  In no event shall SGI be liable for
any loss of profits, loss of business, loss of data or for any indirect,
special, exemplary, incidental or consequential damages of any kind arising
from your use of, failure to use or improper use of any of the instructions
or information in this Security Advisory.

- -----------------------
- --- Issue Specifics ---
- -----------------------

It has been reported that certain Microsoft RPC scanning can cause the
DCE daemon dced to abort, causing a denial of service vulnerability.

The Common Vulnerabilities and Exposures project ( has
assigned the name CAN-2003-0746 to this issue:

SGI has investigated the issue and recommends the following steps for
neutralizing the exposure.  It is HIGHLY RECOMMENDED that these measures
be implemented on ALL vulnerable SGI systems.

This vulnerability has been corrected with patches to DCE 1.2.2c and in
potential future releases of DCE.

- --------------
- --- Impact ---
- --------------

DCE is an optional product, not installed by default.

To determine the version of DCE you are running, execute the following

  % versions -b  dce dce_domestic

This will return a result similar to the following output:

 I = Installed, R = Removed

 Name             Date    Description

 I dce          08/01/2003 Distributed Computing Environment, 1.2.2c
 I dce_domestic 08/01/2003 Distributed Computing Environment(domestic), 1.2.2c

If the output is similar to the above, then DCE is installed and the
system may be vulnerable unless patched.

- ----------------------------
- --- Temporary Workaround ---
- ----------------------------

There is no effective workaround available for this vulnerability.
SGI recommends either upgrading DCE (when available), or installing
the appropriate patch from the listing below.

- ----------------
- --- Solution ---
- ----------------

SGI has provided a series of patches for this vulnerability.
Our recommendation is to upgrade DCE (when available), or
install the appropriate patch.

For international version of DCE 1.2.2c, install patch 5313.
For domestic version of DCE 1.2.2c, install both patch 5313 and 5314.

Note that, for export control reasons, the domestic patch 5314
will not be made available on the FTP site,
and must be obtained from your SGI support representative.

Older versions of DCE are potentially vulnerable, but are
no longer supported. No patches are available for older unsupported
DCE releases.

             ##### Patch File Checksums ####
Filename:                 README.patch.5313
Algorithm #1 (sum -r):    54174 9 README.patch.5313
Algorithm #2 (sum):       30234 9 README.patch.5313
MD5 checksum:             E0307B53001243D5A87FAA74CEBCFDAA

Filename:                 patchSG0005313
Algorithm #1 (sum -r):    14338 4 patchSG0005313
Algorithm #2 (sum):       54694 4 patchSG0005313
MD5 checksum:             3153FD44926CDE616A2A82E86FDBCD09

Filename:                 patchSG0005313.dce_man
Algorithm #1 (sum -r):    35638 7 patchSG0005313.dce_man
Algorithm #2 (sum):       2968 7 patchSG0005313.dce_man
MD5 checksum:             0333479CE3C5652B6E232422B5C451DD

Filename:                 patchSG0005313.dce_sw
Algorithm #1 (sum -r):    21490 6527 patchSG0005313.dce_sw
Algorithm #2 (sum):       5488 6527 patchSG0005313.dce_sw
MD5 checksum:             51E65B0D9FC72DF3817BC55A514437C2

Filename:                 patchSG0005313.dce_sw32
Algorithm #1 (sum -r):    41987 6716 patchSG0005313.dce_sw32
Algorithm #2 (sum):       42956 6716 patchSG0005313.dce_sw32
MD5 checksum:             5EFF27658E973E86A491BB2AA4404734

Filename:                 patchSG0005313.dce_sw64
Algorithm #1 (sum -r):    17548 6823 patchSG0005313.dce_sw64
Algorithm #2 (sum):       32727 6823 patchSG0005313.dce_sw64
MD5 checksum:             352B116D7FC928F1CEF08CC3CB7D2347

Filename:                 patchSG0005313.idb
Algorithm #1 (sum -r):    01470 2 patchSG0005313.idb
Algorithm #2 (sum):       10197 2 patchSG0005313.idb
MD5 checksum:             5B9F9B37B28F84D6FF63ADCE14B0A05F

Filename:                 README.patch.5314
Algorithm #1 (sum -r):    02572 9 README.patch.5314
Algorithm #2 (sum):       34329 9 README.patch.5314
MD5 checksum:             B5C48AC12B403AB7F43769659F3A5762

Filename:                 patchSG0005314
Algorithm #1 (sum -r):    35912 5 patchSG0005314
Algorithm #2 (sum):       21082 5 patchSG0005314
MD5 checksum:             A056DE501167973DC0C1765BA59F566D

Filename:                 patchSG0005314.dce_domestic_sw
Algorithm #1 (sum -r):    48466 6591 patchSG0005314.dce_domestic_sw
Algorithm #2 (sum):       17258 6591 patchSG0005314.dce_domestic_sw
MD5 checksum:             12FDB6C36AA931FCF7147594F3C547EF

Filename:                 patchSG0005314.dce_domestic_sw32
Algorithm #1 (sum -r):    39925 6822 patchSG0005314.dce_domestic_sw32
Algorithm #2 (sum):       39342 6822 patchSG0005314.dce_domestic_sw32
MD5 checksum:             C50E8D2F8F2E07FDB0EDABC02639D5AA

Filename:                 patchSG0005314.dce_domestic_sw64
Algorithm #1 (sum -r):    09209 6916 patchSG0005314.dce_domestic_sw64
Algorithm #2 (sum):       62264 6916 patchSG0005314.dce_domestic_sw64
MD5 checksum:             78379D662001023EAA7A8DEE23067750

Filename:                 patchSG0005314.idb
Algorithm #1 (sum -r):    51607 2 patchSG0005314.idb
Algorithm #2 (sum):       11196 2 patchSG0005314.idb
MD5 checksum:             0B791839259EDCD27CB02577421ABF5B

- ------------------------
- --- Acknowledgments ----
- ------------------------

SGI wishes to thank Lawrence Livermore National Labs for their assistance
in this matter.

- -------------
- --- Links ---
- -------------

SGI Security Advisories can be found at: and

SGI Security Patches can be found at: and

SGI patches for IRIX can be found at the following patch servers: and

SGI freeware updates for IRIX can be found at:

SGI patches and RPMs for Linux can be found at:

SGI patches for Windows NT or 2000 can be found at:

IRIX 5.2-6.4 Recommended/Required Patch Sets can be found at: and

IRIX 6.5 Maintenance Release Streams can be found at:

IRIX 6.5 Software Update CDs can be obtained from:

The primary SGI anonymous FTP site for security advisories and patches is  Security advisories and patches are located under the URL

For security and patch management reasons, (mirrors security FTP repository) lags behind and does not do a
real-time update.

- -----------------------------------------
- --- SGI Security Information/Contacts ---
- -----------------------------------------

If there are questions about this document, email can be sent to


SGI provides security information and patches for use by the entire SGI
community.  This information is freely available to any person needing the
information and is available via anonymous FTP and the Web.

The primary SGI anonymous FTP site for security advisories and patches is  Security advisories and patches are located under the URL

The SGI Security Headquarters Web page is accessible at the URL:

For issues with the patches on the FTP sites, email can be sent to

For assistance obtaining or working with security patches, please
contact your SGI support provider.


SGI provides a free security mailing list service called wiretap and
encourages interested parties to self-subscribe to receive (via email) all
SGI Security Advisories when they are released. Subscribing to the mailing
list can be done via the Web
( or by sending email to
SGI as outlined below.

% mail
subscribe wiretap <YourEmailAddress such as >

In the example above, <YourEmailAddress> is the email address that you wish
the mailing list information sent to.  The word end must be on a separate
line to indicate the end of the body of the message. The control-d (^d) is
used to indicate to the mail program that you are finished composing the
mail message.


SGI provides a comprehensive customer World Wide Web site. This site is
located at .


If there are general security questions on SGI systems, email can be sent to

For reporting *NEW* SGI security issues, email can be sent to or contact your SGI support provider.  A support
contract is not required for submitting a security report.

      This information is provided freely to all interested parties
      and may be redistributed provided that it is not altered in any
      way, SGI is appropriately credited and the document retains and
      includes its valid PGP signature.

Version: 2.6.2



- 漏洞信息

MultiVendor DCE Unspecified DoS
Denial of Service
Loss of Availability

- 漏洞描述

Distributed Computing Environment (DCE) contains a flaw that may allow a remote denial of service. The issue is triggered when invalid traffic is received by the DCE daemon occurs, and will result in loss of availability for the service.

- 时间线

2003-08-11 Unknow
Unknow Unknow

- 解决方案

Currently, there are no known workarounds or upgrades to correct this issue. However, HP and SGI have released patches to address this vulnerability. At this time, there is no patch from Cray.

- 相关参考

- 漏洞作者

Unknown or Incomplete