MS00-047: NetBIOS ???????????? ?? ???? ???? ????????? ??? ?? ??????? ?????

???? ?????? ???? ??????
???? ID: 269239 - ?? ???????? ?? ?????? ??? ?? ?? ???? ???? ???? ??.
??? ?? ??????? ???? | ??? ?? ??????? ????

?? ????? ??

?????

Microsoft Windows NT 4.0 ?? Windows 2000-?????? ?????????? ?? ??????? ????? ?? ?????????-??-???? ?? ?????? ???? ?? ??? ???? ?????????? ?? ?????? ?? ??????? ?? ?? ???? ??? ?????? ??? ???

TCP/IP (NBT) ????????? ?? NetBIOS ???, ??????, ??????? ?? "spoofing." ?? ????? ????? ????????? ?????? ??? ?????????????? ?????????? ?? ??? ???? relinquish ?? ??????????? ???? ??? ???? ?? ??? ?????? ?? ???? ?? ??? ?? ???? ?? ??? ???? ?????? ???????? ?? ??? ??? ??? ????? datagram ????? ?? ??? ????????? ??????? ??????? misuse ??? ???

??? ??????? ??? ????? datagram ??????? ?? ??? ??, ?? ???????? ???? ?? ??? NetBIOS ??? ??? ????? ?? ?? ???????? ??? ????, ?? ?? ????????? ?? ???? ?? ??? ?????? ????? ????? ?? ??? ????????? ??? ??????? ?? ????? ??? ?? ???????? ???????? ????? ??????? ??? ?? ?? ?? ???? ?? ????? ?? ???? ??:

?????? ??????????? ?????

???????? ?? ???? ???? ???????? ?? ????? ??????? ?????? ????? ?? ???? ???

NetBIOS ??? ???? ?????

  • ??????? Neighborhood ???? ????? ??? ???? ???
  • ??? ????????? equivalents ??? ???? ???
  • ????? logons ???????? ????? ?????? ?????????? ???? ????
  • ???? ?????? NetBIOS ??????, ???? NetBIOS ??? ?????????? ?? ??? ?? ???? ???????? ?? ????? ??????? ???? ??? ?????? ?? ???? ???
??? ??,nbtstat - n???? ????????? ?? ???? ??? "?????" ?? ?? ?????? ?? ??? ???? NetBIOS ??? ?????

?? ??? ???? ???? ??? ?? ?????? ?????? ???? ?? ??? ???? ????? ??? ??? ????? datagram ??????? ???? ?? ??? Windows ?? ??????? ????????? ???? ???

????

?????? ??????????? ?????

???? ???????? ?? ????? ???? ?? ???? ??? ????????? ??????? datagram ??? TCP/IP ??? ?? ??? ???? ?????? NetBIOS ??? ??? ??? ??? ??????? NetBT Datagram ???? datagram caches ???

Datagram ???? datagrams ???? ?????????? ?? ??? ???? ?????? ?? ??? ????? ??? ???? ???, ?? ?? ???? ??? ?? UDP ????? 138 ?? ???? NetBT ?????? ??????? ??? ????

NetBIOS ??? ???? ?????

??? ???????? ??? ?? ?? ??????? ??? ?? ??????? ???? ??? ?? ?? ??? ??? ??????? ??????? ??? ??????? ???????? ?? ??? ??? ??? ???? datagram ??????? ???? ??? ????? ???? ?? ?????? ?? ???, ????? ???? ?? ??? NetBIOS ??? ?????? ?? ?? ?????? ?? ???????? ?? ???? ???:
  • ???????? ??????? ???? ??? ????? ?? ???? ??? ???????? ???? ??????? Neighborhood ??????
  • ????? ??????? ???? ??? ????? ?? ???? ?????? ????????? equivalents ?????????
  • ???????? ???? ??? ????? ????? ?????? ?? ???????? ?? ???? ????
  • ????? ???? ?? ?????????? ???? ??? ????? ???? ?? ??? ???? ???????? ?? ????? ?? ???????? ?? ???? ????
??????? ???? ?? ??????? ?? ??? ?? ?????? ?? ??? ??????? ??? ???? datagrams ????? ??? ???? ???, ?? ?? ???? ??? ?? 137 TCP/UDP ????? ?? ???? ??????? NetBT ?? WINS ?? ?????? ?? ??? ????

????????

?? ???????? ?? ?? ???? ?? ??? ??????? ???? ?? ????? ????:

?????? ??????????? ?????

?? ?????? ?? ???????? ???????? ?????? ?? ??? ?? ???? ??? ??? ??? ???????? ??????? ???????? ?? ???? ????? ???? ?????, ????????? preload NetBIOS ??? ??? Lmhosts ?????, Lmhosts preloaded ????? ?? ??? ????????? ?? ???????? ???? ?? ?????? ????? ????? ?? ??? NetBIOS ?? ???? ???? ??, ?? ???? ??? ?????? ?? ?????? ???

NetBIOS ??? ???? ?????

?? ?????? ??, ?? ??????? ??? ??????? ???????? ?? ???????? ??????? ?? ?? ??? ?? ????? ???? ???? ???? ?? ??? ?? Windows ??????? ??? ???? (WINS) ????? ?? ???? originate ?? ???? ???????? ???????? ?????? ?? ??? ??????? ???????? ?? ???? ?????

???:: For this issue, the hotfix only works if the affected computer is configured to use WINS.

??????????: Microsoft recommends that this hotfix only be applied to computers that specifically require it, that is, computers that play a central role in the network and that the administrator judges could be a target for such an attack. Microsoft does not recommend that you apply this hotfix globally without testing it in a specific environment.

???????????? ???, ????, ?? ????? ?? ????????? ?? ??????? ???? ?? ??? ????? ????? ??? ???? ???????, ??? ?? ????????? ?? ??? ??? ?? ??????? ???? ??? ?? ????? ???????? ??????? ?? ???? ???.. ?????, ????????? ???? ?? ?? ?? ????? ?? ??????????? ???? ???? ???.. ?????? ??????? ?? ???, ????????? ?? ??????? ???? ?? ???? ???? ??? ?? ???.. ???, ??? ??? ?????? ??????? ???? ?? ?? ?? ????????? ?? ???????????? ?? ???? ???.. ????????? ?? ??? ?? ???? ?? ???????????? ???? ?? ????? ?? ???? ??? ???? ??????? ?? ???, Microsoft ?????? ??? ??? ???? ????? ?? ??? ????? ???? ?????? ????? ????::
322756??? ?? ???? ?? Windows ??? ????????? ?? ???????????? ???? ????
Follow these steps:
  1. Use Registry Editor (Regedt32.exe) to view the following registry key:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters
  2. Modify the following registry value, or add the value if it does not exist:
    Value name:NoNameReleaseOnDemand
    Value type: REG_DWORD-Boolean
    Value data: 0, 1 (False, True)
    Default: 0 (False)
    Recommendation: 1
    Description: This parameter determines whether the computer releases its NetBIOS name when it receives a name-release request from the network. It was added to permit the administrator to protect the computer against malicious name-release attacks.

Windows 2000:

To resolve this problem, obtain the latest service pack for Windows 2000. For additional information, click the following article number to view the article in the Microsoft Knowledge Base:
260910How to Obtain the Latest Windows 2000 Service Pack
????? ??????? Microsoft ??????? ?????? ?? ??????? ?? ??? ?????? ???::
?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
English Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Arabic Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Chinese (Simplified) Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Chinese (Traditional) Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Czech Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Danish Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Dutch Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Finnish Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
French Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
German Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Greek Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Hebrew Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Hungarian Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Italian Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Japanese Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Japanese NEC Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Korean Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Norwegian Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Polish Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Portuguese (Brazilian) Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Portuguese Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Russian Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Spanish Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Swedish Language Version

?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Turkish Language Version

For additional information about how to download Microsoft Support files, click the following article number to view the article in the Microsoft Knowledge Base:
119591?????? ?????? ?? Microsoft ?????? ??????? ???? ??????? ????
Microsoft ????? ?? ??? ?? ????? ?? ????? ?? ??? Microsoft ?? ?? ?????? ?? ?????? ???? ??????? ?????-??? ?????????? ?? ????? ???? ?? ????? ????? ?? ?? ??.. The file is stored on security-enhanced servers that help to prevent any unauthorized changes to the file.The English version of this fix should have the following file attributes or later:
   Date        Time       Version        Size     File name
   --------------------------------------------------------
   07/20/2000  4:09:13pm  5.0.2195.2103  142,832  Netbt.sys
				

For additional information about how to install Windows 2000 and Windows 2000 hotfixes at the same time, click the article number below to view the article in the Microsoft Knowledge Base:
249149Installing Microsoft Windows 2000 and Windows 2000 Hotfixes

Windows NT 4.0

To resolve this problem, obtain the individual package referenced below or obtain the Windows NT 4.0 Security Rollup Package.For additional information on the SRP, click the article number below to view the article in the Microsoft Knowledge Base:
299444Post-Windows NT 4.0 ?????? ??? 6a ??????? ????? ?????? (SRP)
????? ????? Microsoft ??????? ?????? ?? ??????? ?? ??? ?????? ??::
?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Q269239i.exe ?? ??????? ????
Microsoft ?????? ??????? ?? ???? ??????? ???? ?? ???? ??? ???? ????? ?? ???, ????? ???? ?????? ?? ????? ?? ???? ?? Microsoft ???????? ??? ?????::
119591?????? ?????? ?? Microsoft ?????? ??????? ???? ??????? ????
Microsoft ????? ?? ??? ?? ????? ?? ????? ?? ??? Microsoft ?? ?? ?????? ?? ?????? ???? ??????? ?????-??? ?????????? ?? ????? ???? ?? ????? ????? ?? ?? ??.. ????? ?? ????? ?? ??? ???? ?? ??????? ???????? ?? ????? ???????? ????? ?? ???????? ???

?? ?????? ?? ???????? ??????? ??? ???? ?? ?? ????? ????????? ?? ???? ??? ?? ???? ?????::
   Date        Time    Size     File name  Platform
   -----------------------------------------------------
   08/29/2000  4:39pm  123,600  Netbt.sys  x86
				

Windows NT ????? 4.0, ??????? ????? ???????

?? ?????? ?? ?? ???? ?? ??? ?? ?? ?? ??? ?? Windows NT ????? 4.0, ??????? ????? ???????, ??????? ????? ?????? (SRP) ??? ???????? ???????? ??????? ?????SRP ?? ???? ??? ???????? ??????? ?? ??? Microsoft ???????? ??? ???? ????? ?? ??? ????? ???? ?????? ?? ????? ????:
317636Windows NT ????? 4.0, ??????? ????? ???????, ??????? ????? ??????
?? ?? ??????? ????? Microsoft ?? ?????? ??, ????? ?? ?? ???? ??? ?????? ?????? ?? ??? ???? ?? ??? ?????? ???? ??? ???? ?? ??????? ?????? ?? ????? ?? ??? ??? ?? ???????? ?? ??? ??? ???? ?????

?? ?????? ?? ?? ???? ?? ??? ????? ??????? ???? ?? ??? Microsoft ?????? ?????? ???? ?? ?????? ????? Microsoft ?????? ?????? ???? ??? ???? ?? ?????? ????? ?? ???? ??? ??????? ?? ???? ????, ?? ??? ????? Microsoft ??? ???? ?? ????:
HTTP://support.Microsoft.com/default.aspx?scid=fh;EN-US;CNTACTMS
???:: ????? ?????? ???, ??????? ??? ?????? ????? ?? ??? incurred ????? ?? ???? ?? ???? ???? ?? ???? ??? Microsoft ?????? ????????? ????????? ???? ?? ?? ??? ????? ?????? ???? ?????? ?? ?? ??????? ???????? ?????? ???????? ?? ?? ???????? ?? ??? ??????? ?????? ????? ???? ????? ?? ?? ??????? ?????? ?? ??????? ???? ????..

????? ????? Microsoft ??????? ?????? ?? ??????? ?? ??? ?????? ??::
?? ??? ?? ??????? ?????? ??? ?? ??????? ????
??????? ????
Q269239i.exe ?? ??????? ????
Microsoft ?????? ??????? ?? ???? ??????? ???? ?? ???? ??? ???? ????? ?? ???, ????? ???? ?????? ?? ????? ?? ???? ?? Microsoft ???????? ??? ?????::
119591?????? ?????? ?? Microsoft ?????? ??????? ???? ??????? ????
Microsoft ????? ?? ??? ?? ????? ?? ????? ?? ??? Microsoft ?? ?? ?????? ?? ?????? ???? ??????? ?????-??? ?????????? ?? ????? ???? ?? ????? ????? ?? ?? ??.. ????? ?? ????? ?? ??? ???? ?? ??????? ???????? ?? ????? ???????? ????? ?? ???????? ???

?? ?????? ?? ???????? ??????? ??? ???? ?? ?? ????? ????????? ?? ???? ??? ?? ???? ?????::
   Date        Time    Size     File name  Platform
   -----------------------------------------------------
   08/29/2000  06:23p  123,536  Netbt.sys  x86
				

Windows Millennium Edition

????? 14, 2000, ?? ??? ??? ??? ???????? ?????? ?? ?? ???????? ?????? ?? ????

?? ???????? ?? ?? ???? ?? ??? ???????? ????? ???????????? ?? ?? NetBIOS exploiting ?? ???? ?? ?? 137-139, ????? ??????? ?? ??? ???????? ?????????????

?? ?? ???? ??? ?? NetBIOS ??? ???? ????? ?????? ?? ?? ???? ?? ??? ?? ?? TCP/IP ????? ??????? ?? ??? TCP/IP ??? ??????? ?? ???: ????? ?? ???? ??? ???????? ??? ?? ?? ???? ??? ?????? ?? ????? ??????? ??? ?? ???? ?? ?? ????? ??:
  • ??? ???????? ???????? ?? ???????? ????? ??????????? ????????? (DHCP) ??????? ???? ??, ?? ??? TCP/IP ??? ?? ???????? ?????
  • ??? ?????? ?? ???????? ??????? ??????? ?????????? ????, ?? ?? ??? ???: ?????? ??????
  • ???????? ?? ???????? ????..

Windows 95, Windows 95 OSR 2, Windows 98, ?? Windows 98 ????? ???????

?? ?????? ?? ???????? ??????? ??? ???? ?? ?? ????? ????????? ?? ???? ??? ?? ???? ?????::
  Date       Time    Version    Size    File Name Platform
  -------------------------------------------------------------------------
  07/31/2000 11:11a  4.10.1659  87,769  Vnbt.386  Windows 95, all versions
  07/10/2000 11:23a  4.10.1721  87,749  Vnbt.386  Windows 98
  07/10/2000 11:36a  4.10.2149  90,893  Vnbt.386  Windows 98 Second Edition
				

??????

?? ?????? ?? ???? ???? Windows 2000 ?????? ??? 2 ??? ??? ???? ??? ???

???? ???????

???? ??????? ?? ???, ????? ?????????? Microsoft ??????? ??????? ?????:
HTTP://www.Microsoft.com/technet/Security/bulletin/MS00-047.mspx
TCP/IP ????????? ?? NetBIOS ??????? ?? ?????? ?????????, ?? ????? "spoofing." ?? ????? ????????? ??? ?? ???????? ???????? ???????? ??? ?? ???? ?? ?? ?????? ??? ???????????? ?? ?????? ???? ??, ?? ????? ?? outcome ?? ??????? ?? ?????? ???? ????????? ?? ????? ???? ?? ??? ??? ??? ?????????????? ?????????? ??? misuse ??????? ??????? ?? ????????? ?? ???? ?????? ???????? ?? ??? ??? ??? ???? datagram ????? ?? ??? ???? ??? relinquish ??????????? ???? ??? ???? ?? ??? ?????? ?? ?? ?????

NetBIOS ??? ????? RFC 1001 (??? 15.1.3.5) ??? ????????? ???? ?? ?? ?? ?? ???? ??? ?????? ?? ????? NetBIOS ??? ??????? ???? ??? ??? ??????? ???????????? ?? ??? ??? ????? NetBIOS ??? ???????? ????????? ?? ????? ??? ???; ??? NetBIOS ??? ????? ???? ??????? ????? ??? ?? ??? ??? ??? NetBIOS ??? ?????? ??? ?? ??? ???

???? ?? ???? ??? ???????? Microsoft Windows ???????? ???????? ??? ?? ???? ?? ?? ??? ???????? ?? NetBIOS ??? ???? ??? ??????? datagram ????? ??????? NetBIOS ??? ???? conflicted ?????? ??? ???? ??? Conflicted NetBIOS ??? ??? ??????? ?? ???? ???? ?? ??? ??? ??? ??????, ???? establishment ?? ??? ????? ???? ?? ???, ?? ????? ?? NetBIOS datagrams ??????? ???? ?? ??? ????? ???? ?? ??? ???????? ???? ??? ????? ??? ????????

??????? ????? ?? ??? (??? ?? Lmhosts ????? ??? preloaded ???? ???), ????? TCP/IP ??? ??????? datagram ?????? ??????? ???? ?? ??? ?? ??? ???? ????? ???????? ??; ?? ??? ?? ????? NetBIOS ??? ??? ?? 5 ????? ???? ?????? ??? ??? ????? ????, ????????? ?????? ?? ???? ?????? ?? ??????? datagrams ????? ?? ??? ???? ????? exposing risking.

"Spoofing" ???????? ?? 100 ??????? ??????? ?? ???????? ?? ?? ???????? ?? ???????? ???? ?? 137-139 ????? ?? ??????? ???? ?? ??? Windows 2000 ??? IP ??????? ????????? (IPSec) ?? ????? ???? ?? ????? ???? ?? ??? ?? ?????

??? ???????????? ?? ??? ?? ????? NetBT ?????? ??? ??? ?????? ????? ??? ???, ?????????? ?? ??? confusing ????? ?? ???? ?? ?? ?? 4320 ????????? ?? ???? ?? ???? ??? ???? ??? ???? ?? ???? ?? ??? ??????? ??? ???? ?? ??? ??????? ????? ???? ?? ??? ???? ???? ?? ?? ???? ???? ?? ????? ???? ???????? ?? ??? b ??? ' ?? ' ???????? improperly 'h ???' ???? ?? ?? ?? ????? ??? ????

Windows 95 ?????????? ?? ???? ??? ???????? ??????? ?? ??? Microsoft ???????? ??? ???? ????? ?? ??? ????? ???? ?????? ?? ????? ????:
161020Windows 95 ?????? ???????????
Windows 98 ?? Windows 98 ????? ??????? ?????????? ?? ???? ??? ???????? ??????? ?? ??? Microsoft ???????? ??? ???? ????? ?? ??? ????? ???? ?????? ?? ????? ????:
206071Windows 98 ?? SE ?????????? ?? ??????? ???????

???

???? ID: 269239 - ????? ???????: 29 ??????? 2010 - ??????: 4.0
???? ???? ???? ??:
  • Microsoft Windows 2000 Server
  • Microsoft Windows 2000 Advanced Server
  • Microsoft Windows 2000 Professional Edition
  • Microsoft Windows NT Server 4.0 Enterprise Edition
  • Microsoft Windows NT Workstation 4.0 Developer Edition
  • Microsoft Windows NT Server 4.0 Standard Edition
  • Microsoft Windows 95
??????: 
kbhotfixserver kbqfe kbbug kbfix kbgraphxlinkcritical kbnetwork kbsecbulletin kbsecurity kbsecvulnerability kbwin2000presp2fix kbmt KB269239 KbMthi
???? ?????? ????????
??????????: ?? ???? ?? ???? ??????? ?? ????? ?? Microsoft ????-?????? ?????????? ?????? ?????? ???? ??? ??. Microsoft ???? ??? ????-???????? ?? ????-???????? ????? ?????? ?? ???? ???????? ???? ?? ???? ????? ????? ??? ?? ??? ?????? ?? ???? ???? ???? ??? ????? ??. ???????, ????-???????? ???? ????? ???? ???? ???? ???. ?????, ????????, ?????-???? ?? ??????? ?? ???????? ?? ???? ???, ???? ?? ??? ?????? ???? ???? ??? ????? ??? ?? ???? ??. Microsoft ??????? ??? ???? ?? ?????? ?? ??????????, ????????? ?? ??? ?????? ?? ???? ????? ?? ???? ???????? ?? ??? ???? ????? ?? ??? ????????? ???? ??. Microsoft ????-?????? ?????????? ?? ????? ?????? ?? ?? ??? ??.
?????????? ?? ??????? ????????? ??????? ??:269239

??????????? ???

 

Contact us for more help

Contact us for more help
Connect with Answer Desk for expert help.
Get more support from smallbusiness.support.microsoft.com