Windows Kernel TCP/IP/IGMPv3 and MLDv2 Vulnerability
Publish Date: 21 lipca 2015
Severity: : Critical
CVE Kennungen: : CVE-2007-0069
Advisory Date: 21 lipca 2015
DESCRIPTION
Unspecified vulnerability in the kernel in Microsoft Windows XP SP2, Server 2003, and Vista allows remote attackers to cause a denial of service (CPU consumption) and possibly execute arbitrary code via crafted (1) IGMPv3 and (2) MLDv2 packets that trigger memory corruption, aka "Windows Kernel TCP/IP/IGMPv3 and MLDv2 Vulnerability."
INFORMATION EXPOSURE
Out of the box, Third Brigade packet filtering protects against all known exploits of this vulnerability. Firewall best practices and standard default firewall configurations can help protect networks from IGMP and MLD attacks that originate outside the enterprise perimeter.
AFFECTED SOFTWARE AND VERSION:
- Microsoft Windows Server 2003
- Microsoft Windows Vista
- Microsoft windows-nt XP