Back to search

MS12-020: Vulnerabilities in Remote Desktop Could Allow Remote Code Execution (2671387)

Severity CVSS Published Added Modified
9 (AV:N/AC:M/Au:N/C:C/I:C/A:C) March 13, 2012 March 13, 2012 April 10, 2014

Available Exploits 

Description

This security update resolves two privately reported vulnerabilities in the Remote Desktop Protocol. The more severe of these vulnerabilities could allow remote code execution if an attacker sends a sequence of specially crafted RDP packets to an affected system. By default, the Remote Desktop Protocol (RDP) is not enabled on any Windows operating system. Systems that do not have RDP enabled are not at risk.

Free Nexpose Download

Discover, prioritize, and remediate security risks today!

 Download now

References

Solution

  • Microsoft Windows Server 2008 R2 SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Enterprise Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Standard Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Datacenter Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Web Edition SP1 OR < SP1 (x86_64)

    MS12-020: Security Update for Windows Server 2008 R2 x64 Edition (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 SP2 (x86_64), Microsoft Windows Server 2008 Enterprise Edition SP2 (x86_64), Microsoft Windows Server 2008 Standard Edition SP2 (x86_64), Microsoft Windows Server 2008 Datacenter Edition SP2 (x86_64), Microsoft Windows Server 2008 HPC Edition SP2 (x86_64), Microsoft Windows Server 2008 Web Edition SP2 (x86_64), Microsoft Windows Server 2008 Storage Edition SP2 (x86_64), Microsoft Windows Small Business Server 2008 SP2 (x86_64), Microsoft Windows Essential Business Server 2008 SP2 (x86_64)

    MS12-020: Security Update for Windows Server 2008 x64 Edition (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Embedded Standard 7 SP1 (x86_64)

    MS12-020: Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows 7 SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Basic Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Basic N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Premium Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Premium N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Ultimate Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Ultimate N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Enterprise Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Enterprise N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Professional Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Starter Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Starter N Edition SP1 OR < SP1 (x86_64)

    MS12-020: Security Update for Windows 7 for x64-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 R2 SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Enterprise Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Standard Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Datacenter Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Web Edition SP1 OR < SP1 (ia64)

    MS12-020: Security Update for Windows Server 2008 R2 for Itanium-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Embedded Standard 7 SP1 (x86)

    MS12-020: Security Update for Windows Embedded Standard 7 (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 SP2 (x86), Microsoft Windows Server 2008 Enterprise Edition SP2 (x86), Microsoft Windows Server 2008 Standard Edition SP2 (x86), Microsoft Windows Server 2008 Datacenter Edition SP2 (x86), Microsoft Windows Server 2008 HPC Edition SP2 (x86), Microsoft Windows Server 2008 Web Edition SP2 (x86), Microsoft Windows Server 2008 Storage Edition SP2 (x86), Microsoft Windows Small Business Server 2008 SP2 (x86), Microsoft Windows Essential Business Server 2008 SP2 (x86)

    MS12-020: Security Update for Windows Server 2008 (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 SP2 (ia64), Microsoft Windows Server 2008 Enterprise Edition SP2 (ia64), Microsoft Windows Server 2008 Standard Edition SP2 (ia64), Microsoft Windows Server 2008 Datacenter Edition SP2 (ia64), Microsoft Windows Server 2008 HPC Edition SP2 (ia64), Microsoft Windows Server 2008 Web Edition SP2 (ia64), Microsoft Windows Server 2008 Storage Edition SP2 (ia64), Microsoft Windows Small Business Server 2008 SP2 (ia64), Microsoft Windows Essential Business Server 2008 SP2 (ia64)

    MS12-020: Security Update for Windows Server 2008 for Itanium-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows 7 SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Basic Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Basic N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Premium Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Premium N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Ultimate Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Ultimate N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Enterprise Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Enterprise N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Professional Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Starter Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Starter N Edition SP1 OR < SP1 (x86)

    MS12-020: Security Update for Windows 7 (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2003, Datacenter Edition SP2 (x86), Microsoft Windows Server 2003 SP2 (x86), Microsoft Windows Server 2003, Standard Edition SP2 (x86), Microsoft Windows Server 2003, Enterprise Edition SP2 (x86), Microsoft Windows Server 2003, Web Edition SP2 (x86), Microsoft Windows Small Business Server 2003 SP2 (x86)

    MS12-020: Security Update for Windows Server 2003 (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2003, Datacenter Edition SP2 (ia64), Microsoft Windows Server 2003 SP2 (ia64), Microsoft Windows Server 2003, Standard Edition SP2 (ia64), Microsoft Windows Server 2003, Enterprise Edition SP2 (ia64), Microsoft Windows Server 2003, Web Edition SP2 (ia64), Microsoft Windows Small Business Server 2003 SP2 (ia64)

    MS12-020: Security Update for Windows Server 2003 for Itanium-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2003, Datacenter Edition SP2 (x86_64), Microsoft Windows Server 2003 SP2 (x86_64), Microsoft Windows Server 2003, Standard Edition SP2 (x86_64), Microsoft Windows Server 2003, Enterprise Edition SP2 (x86_64), Microsoft Windows Server 2003, Web Edition SP2 (x86_64), Microsoft Windows Small Business Server 2003 SP2 (x86_64)

    MS12-020: Security Update for Windows Server 2003 x64 Edition (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows XP Professional SP3 (x86), Microsoft Windows XP Home SP3 (x86), Microsoft Windows XP Media Center Edition 2005 SP3 (x86), Microsoft Windows XP Tablet PC Edition 2005 SP3 (x86)

    MS12-020: Security Update for Windows XP (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows XP Professional SP3 OR SP2 (x86_64)

    MS12-020: Security Update for Windows XP x64 Edition (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Vista SP2 (x86), Microsoft Windows Vista Home, Basic Edition SP2 (x86), Microsoft Windows Vista Home, Basic N Edition SP2 (x86), Microsoft Windows Vista Home, Premium Edition SP2 (x86), Microsoft Windows Vista Ultimate Edition SP2 (x86), Microsoft Windows Vista Enterprise Edition SP2 (x86), Microsoft Windows Vista Business Edition SP2 (x86), Microsoft Windows Vista Business N Edition SP2 (x86), Microsoft Windows Vista Starter Edition SP2 (x86)

    MS12-020: Security Update for Windows Vista (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Vista SP2 (x86_64), Microsoft Windows Vista Home, Basic Edition SP2 (x86_64), Microsoft Windows Vista Home, Basic N Edition SP2 (x86_64), Microsoft Windows Vista Home, Premium Edition SP2 (x86_64), Microsoft Windows Vista Ultimate Edition SP2 (x86_64), Microsoft Windows Vista Enterprise Edition SP2 (x86_64), Microsoft Windows Vista Business Edition SP2 (x86_64), Microsoft Windows Vista Business N Edition SP2 (x86_64), Microsoft Windows Vista Starter Edition SP2 (x86_64)

    MS12-020: Security Update for Windows Vista for x64-based Systems (KB2621440)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 R2 SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Enterprise Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Standard Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Datacenter Edition SP1 OR < SP1 (ia64), Microsoft Windows Server 2008 R2, Web Edition SP1 OR < SP1 (ia64)

    MS12-020: Security Update for Windows Server 2008 R2 for Itanium-based Systems (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Server 2008 R2 SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Enterprise Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Standard Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Datacenter Edition SP1 OR < SP1 (x86_64), Microsoft Windows Server 2008 R2, Web Edition SP1 OR < SP1 (x86_64)

    MS12-020: Security Update for Windows Server 2008 R2 x64 Edition (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows 7 SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Basic Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Basic N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Premium Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Home, Premium N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Ultimate Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Ultimate N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Enterprise Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Enterprise N Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Professional Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Starter Edition SP1 OR < SP1 (x86_64), Microsoft Windows 7 Starter N Edition SP1 OR < SP1 (x86_64)

    MS12-020: Security Update for Windows 7 for x64-based Systems (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows 7 SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Basic Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Basic N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Premium Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Home, Premium N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Ultimate Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Ultimate N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Enterprise Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Enterprise N Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Professional Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Starter Edition SP1 OR < SP1 (x86), Microsoft Windows 7 Starter N Edition SP1 OR < SP1 (x86)

    MS12-020: Security Update for Windows 7 (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Embedded Standard 7 SP1 (x86_64)

    MS12-020: Security Update for Windows Embedded Standard 7 for x64-based Systems (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664

  • Microsoft Windows Embedded Standard 7 SP1 (x86)

    MS12-020: Security Update for Windows Embedded Standard 7 (KB2667402)

    Download and apply the patch from: http://go.microsoft.com/fwlink/?LinkId=232664