First published: Tue Nov 28 2006(Updated: )
Qbik WinGate 6.1.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a DNS request with a self-referencing compressed name pointer, which triggers an infinite loop.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Qbik WinGate | <=6.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4518 has a CVSS score indicating a medium severity due to its potential for denial of service.
The main mitigation for CVE-2006-4518 is to upgrade Qbik WinGate to version 6.1.5 or later, which addresses this vulnerability.
CVE-2006-4518 can lead to increased CPU consumption, resulting in denial of service on affected systems.
CVE-2006-4518 affects Qbik WinGate versions 6.1.4 and earlier.
Yes, CVE-2006-4518 can be exploited remotely by sending a specially crafted DNS request.