Article Number
000013547
Applies To
RSA Access Manager 4.7 Agent for IIS
Microsoft Internet Information Services (IIS) 6.0 on Microsoft Windows Server 2003
Issue
AxM - IIS6 w3wp dump caused by null ct_log_stream
IIS6 w3wp dump caused by null ct_log_stream. Customer dump shows IIS
agent passing null stream to fprintf
00000020 12096f34 77bd1d69 ntdll!RtlEnterCriticalSection+0x19
00000000 1209ed38 1209ef6c msvcrt!_lock_file+0x33
00000000 019d5b64 01a195e8 msvcrt!fprintf+0x18
019a574c 12098f8c 00000001 ct_iis60_agent!ct_uprint_private+0x29a [ct_debug.c @283]
Cause
There was no null check before passing the stream to fprintf. Common code for all 4.7 agents. The unix/linux code had the additional check.
Resolution
Contact RSA Customer Support and request RSA Access Manager Agent Hotfix 4.7.0.41 (2008/07/29) or later.
ftp.rsasecurity.com/support/hotfixes/accmgr/agents/4.7/ct-agent-4.7.0.41.zip