CVE-2006-5614: Null Pointer Dereference
Published Oct 31, 2006
·Updated
Microsoft Windows NAT Helper Components (ipnathlp.dll) on Windows XP SP2, when Internet Connection Sharing is enabled, allows remote attackers to cause a denial of service (svchost.exe crash) via a malformed DNS query, which results in a null pointer dereference.
Affected Software
2 affected components
Microsoft Windows Nt Helper Components
Microsoft Windows XP=sp2
Event History
Oct 31, 2006
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:07 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5614?
CVE-2006-5614 has a severity rating that indicates it can cause denial of service on affected systems.
2
How do I fix CVE-2006-5614?
To fix CVE-2006-5614, it is recommended to disable Internet Connection Sharing to mitigate exposure.
3
Which versions of Windows are affected by CVE-2006-5614?
CVE-2006-5614 affects Microsoft Windows XP SP2 with Internet Connection Sharing enabled.
4
What type of attack does CVE-2006-5614 involve?
CVE-2006-5614 involves a remote denial of service attack that causes a crash of the svchost.exe process.
5
Can CVE-2006-5614 be exploited remotely?
Yes, CVE-2006-5614 can be exploited remotely through a malformed DNS query.