CVE-2006-3942: Input Validation
The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause a denial of service (system crash) via an SMBCOMTRANSACTION SMB message that contains a string without null character termination, which leads to a NULL dereference in the ExecuteTransaction function, possibly related to an "SMB PIPE," aka the "Mailslot DOS" vulnerability. NOTE: the name "Mailslot DOS" was derived from incomplete initial research; the vulnerability is not associated with a mailslot.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-3942?
CVE-2006-3942 is classified as a high severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2006-3942?
To fix CVE-2006-3942, apply the relevant security updates from Microsoft for affected Windows versions.
Which Windows versions are affected by CVE-2006-3942?
CVE-2006-3942 affects Microsoft Windows NT 4.0, 2000, XP, and Server 2003.
What kind of attack does CVE-2006-3942 enable?
CVE-2006-3942 allows remote attackers to exploit a vulnerability in the server driver to cause a system crash.
Is CVE-2006-3942 a remote code execution vulnerability?
CVE-2006-3942 is not a remote code execution vulnerability; it specifically causes a denial of service.