7.8
CVE-2006-0021
- EPSS 62.88%
- Veröffentlicht 14.02.2006 19:06:00
- Zuletzt bearbeitet 16.06.2026 22:19:43
- Erkennungen
Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 2003 Server Version datacenter_64-bit Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise Edition 64-bit
Microsoft ≫ Windows 2003 Server Version enterprise Update sp1
Microsoft ≫ Windows 2003 Server Version enterprise_64-bit
Microsoft ≫ Windows 2003 Server Version r2 Edition 64-bit
Microsoft ≫ Windows 2003 Server Version r2 Edition datacenter_64-bit
Microsoft ≫ Windows 2003 Server Version r2 Update sp1
Microsoft ≫ Windows 2003 Server Version standard Edition 64-bit
Microsoft ≫ Windows 2003 Server Version standard Update sp1
Microsoft ≫ Windows 2003 Server Version standard_64-bit
Microsoft ≫ Windows 2003 Server Version web
Microsoft ≫ Windows 2003 Server Version web Update sp1
Microsoft ≫ Windows Xp Edition 64-bit
Microsoft ≫ Windows Xp Edition embedded
Microsoft ≫ Windows Xp Edition home
Microsoft ≫ Windows Xp Edition media_center
Microsoft ≫ Windows Xp Update gold Edition professional
Microsoft ≫ Windows Xp Update sp1 Edition 64-bit
Microsoft ≫ Windows Xp Update sp1 Edition embedded
Microsoft ≫ Windows Xp Update sp1 Edition home
Microsoft ≫ Windows Xp Update sp1 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition home
Microsoft ≫ Windows Xp Update sp2 Edition media_center
Microsoft ≫ Windows Xp Update sp2 Edition tablet_pc
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 62.88% | 0.991 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
http://www.us-cert.gov/cas/techalerts/TA06-045A.html
http://secunia.com/advisories/18853
http://securitytracker.com/id?1015629
http://www.kb.cert.org/vuls/id/839284
http://www.securiteam.com/exploits/5PP0T0KI0O.html
http://www.securityfocus.com/archive/1/482658/30/4350/threaded
http://www.securityfocus.com/bid/16645
http://www.vupen.com/english/advisories/2006/0576
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-007
https://exchange.xforce.ibmcloud.com/vulnerabilities/24489
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1310
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1425
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1647
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1662
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A678
https://www.exploit-db.com/exploits/1599