Network Security White Papers

CERTŪ Incident Note IN-2001-09 / Code Red II: Another Worm Exploiting Buffer Overflow in IIS Indexing ServiceDLL

Overview The CERT/CC has received reports of new self-propagating malicious code exploiting the vulnerability described in CA-2001-13 Buffer Overflow in IIS Indexing Service DLL. These reports indicate that the worm has already affected thousands of systems. This new worm is being called "Code Red II," however, except for using the same buffer overflow mechanism, it is different from the original "Code Red" worm described in CA-2001-19 Code Red Worm Exploiting Buffer Overflow In IIS Indexing Service DLL.

The Code Red II worm causes system level compromise and leaves a backdoor on certain machines running Windows 2000. Vulnerable Windows NT 4.0 systems could experience a disruption of the IIS service.

Further White Paper Details
PublisherCERT Coordination Center File FormatHTML
Date PublishedAugust 2001 Downloads1
FormatWhite Papers   
Topics
Thin clients switch on digitally excluded

Thin clients switch on digitally excluded

Case study: Digital inclusion project tackles social exclusion in Liverpool more

Renault goes multilingual

Renault goes multilingual

Case study: Translation tech turns docs into 23 languages… more


Quick Sitemap Links: