Network Security White Papers
CERTŪ Incident Note IN-2001-09 / Code Red II: Another Worm Exploiting Buffer Overflow in IIS Indexing ServiceDLL
Overview
The CERT/CC has received reports of new self-propagating malicious code exploiting the vulnerability described in CA-2001-13 Buffer Overflow in IIS Indexing Service DLL. These reports indicate that the worm has already affected thousands of systems. This new worm is being called "Code Red II," however, except for using the same buffer overflow mechanism, it is different from the original "Code Red" worm described in CA-2001-19 Code Red Worm Exploiting Buffer Overflow In IIS Indexing Service DLL.
The Code Red II worm causes system level compromise and leaves a backdoor on certain machines running Windows 2000. Vulnerable Windows NT 4.0
systems could experience a disruption of the IIS service.
| Publisher | CERT Coordination Center | File Format | HTML |
|---|---|---|---|
| Date Published | August 2001 | Downloads | 1 |
| Format | White Papers | ||
| Topics | |||



