CVE-2006-4518: Medium severity Qbik WinGate vulnerability
Published Nov 28, 2006
·Updated
Qbik WinGate 6.1.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a DNS request with a self-referencing compressed name pointer, which triggers an infinite loop.
Affected Software
1 affected component
Qbik WinGate<=6.1.4
Remediation
Patch Available
Patch Available
Patch Available
Event History
Nov 28, 2006
CVE Published
11:28 PM
Data Sourced
via NVD·11:28 PM
RemedyDescriptionSeverityAffected Software
Nov 29, 2006
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4518?
CVE-2006-4518 has a CVSS score indicating a medium severity due to its potential for denial of service.
2
How do I fix CVE-2006-4518?
The main mitigation for CVE-2006-4518 is to upgrade Qbik WinGate to version 6.1.5 or later, which addresses this vulnerability.
3
What impact does CVE-2006-4518 have on systems?
CVE-2006-4518 can lead to increased CPU consumption, resulting in denial of service on affected systems.
4
Which versions of Qbik WinGate are affected by CVE-2006-4518?
CVE-2006-4518 affects Qbik WinGate versions 6.1.4 and earlier.
5
Can CVE-2006-4518 be exploited remotely?
Yes, CVE-2006-4518 can be exploited remotely by sending a specially crafted DNS request.