The Remote Desktop Protocol (RDP) implementation in Microsoft Windows XP SP3 does not properly process packets in memory, which allows remote attackers to execute arbitrary code by sending crafted RDP packets triggering access to a deleted object, aka "Remote Desktop Protocol Vulnerability."
References
Link | Resource |
---|---|
http://www.us-cert.gov/cas/techalerts/TA12-227A.html | Third Party Advisory US Government Resource |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15650 | |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-053 |
Configurations
Information
Published : 2012-08-14 18:55
Updated : 2018-10-12 15:03
NVD link : CVE-2012-2526
Mitre link : CVE-2012-2526
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
microsoft
- windows_xp