How effective is a firewall against RPC exploits?
How effective are firewalls against RPC exploits that use port 135? Specifically the vulnerabilities discussed in M$ security bulletins MS03-026 and MS03-039. I will patch the systems behind the firewalls at a later date (I usually allow some time to let Redmond work the bugs out and do a bunch of patches at the same time) and I want to know if I am safe or not. If I am safe I see no reason to take the risk of loading potentially problematic patches and billing out the clients for the time to load the patches and fix any issues they may cause. Thanks in advance for any help you can provide!
PS- We are using ISA at some sites, Netopia routers with built-in firewalls at some sites, and Linksys routers at some of the smaller sites.