CVE-2006-2371: Buffer Overflow
Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2371?
CVE-2006-2371 is considered critical due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2006-2371?
To fix CVE-2006-2371, apply the latest security patch provided by Microsoft for your affected operating system version.
What operating systems are affected by CVE-2006-2371?
CVE-2006-2371 affects Microsoft Windows 2000 SP4, Windows XP SP1 and SP2, and Windows Server 2003 SP1 and earlier versions.
Can CVE-2006-2371 be exploited remotely?
Yes, CVE-2006-2371 can be exploited by remote attackers, either authenticated or unauthenticated.
What type of vulnerability is CVE-2006-2371?
CVE-2006-2371 is a buffer overflow vulnerability in the Remote Access Connection Manager service.