CVE-2006-0021: Buffer Overflow
Published Feb 14, 2006
·Updated
Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."
Affected Software
24 affected components
Microsoft Windows XP=sp1
Microsoft Windows 2003 Server=web
Microsoft Windows 2003 Server=enterprise
Microsoft Windows XP
Microsoft Windows 2003 Server=enterprise_64-bit
Microsoft Windows XP=gold
Microsoft Windows XP
Microsoft Windows 2003 Server=standard_64-bit
Microsoft Windows 2003 Server=datacenter_64-bit-sp1
Microsoft Windows XP=sp2
Microsoft Windows XP=sp1
Microsoft Windows XP
Microsoft Windows XP=sp1
Microsoft Windows 2003 Server=r2-sp1
Microsoft Windows 2003 Server=r2
Microsoft Windows 2003 Server=web-sp1
Microsoft Windows XP=sp2
Microsoft Windows XP
Microsoft Windows 2003 Server=standard-sp1
Microsoft Windows 2003 Server=enterprise-sp1
Microsoft Windows XP=sp1
Microsoft Windows 2003 Server=standard
Microsoft Windows XP=sp2
Microsoft Windows 2003 Server=r2
Remediation
Patch Available
Patch Available
Event History
Feb 14, 2006
CVE Published
07:06 PM
Feb 15, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-0021?
CVE-2006-0021 is classified as a denial of service vulnerability, potentially allowing remote attackers to hang the affected systems.
2
How do I fix CVE-2006-0021?
To mitigate CVE-2006-0021, it is recommended to apply the latest security updates from Microsoft that address this issue.
3
Which operating systems are affected by CVE-2006-0021?
CVE-2006-0021 affects Microsoft Windows XP SP1, SP2, and Windows Server 2003 up to SP1.
4
What type of attack does CVE-2006-0021 involve?
CVE-2006-0021 involves an attack using an IGMP packet that contains an invalid IP option.
5
Can CVE-2006-0021 be exploited remotely?
Yes, CVE-2006-0021 can be exploited remotely by attackers to cause denial of service on the affected systems.