Microsoft Windows ntdll.dll Buffer Overflow Vulnerability Solution:
Some reports indicate that the Microsoft patches for this issue may cause problems. It is not known if this is the result of the patches conflicting with certain configurations. Administrators are advised to apply workaround procedures if problems are experienced after applying the patch.
Microsoft has updated the bulletin with information regarding possible sources of conflicts with this patch. For precise details, see the Caveats section under Additional information about this patch in the Microsoft Security Bulletin.
Microsoft has revised its advisory to state that this vulnerability affects Windows NT systems. As Windows NT does not support WebDAV, exploits using WebDAV as the attack vector will not be effective against Windows NT systems.
Microsoft has released a new revision of the advisory which contains patches for Windows XP.
Microsoft has released fixes:
Microsoft Windows 2000 Terminal Services SP2
Microsoft Windows 2000 Server SP1
Microsoft Windows 2000 Server
Cisco Conference Connection
Microsoft Windows NT Workstation 4.0 SP6a
Microsoft Windows 2000 Professional SP3
Microsoft Windows 2000 Professional SP2
Microsoft Windows 2000 Terminal Services
Microsoft Windows 2000 Professional
Microsoft Windows 2000 Advanced Server SP3
Microsoft Windows XP Home SP1
Cisco IP Contact Center Express
Microsoft Windows 2000 Server SP2
Microsoft Windows 2000 Advanced Server SP1
Microsoft Windows 2000 Advanced Server SP2
Microsoft Windows NT Server 4.0 SP6a
Cisco Internet Service Node
Cisco Call Manager 1.0
Cisco Call Manager 3.0
Cisco Call Manager 3.1 (3a)
Cisco Call Manager 3.1 (2)
Cisco Call Manager 3.1
Cisco Call Manager 3.3 (3)
Cisco Building Broadband Service Manager 5.1