First published: Tue Oct 31 2006(Updated: )
Microsoft Windows NAT Helper Components (ipnathlp.dll) on Windows XP SP2, when Internet Connection Sharing is enabled, allows remote attackers to cause a denial of service (svchost.exe crash) via a malformed DNS query, which results in a null pointer dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT Helper Components | ||
Microsoft Windows XP | =sp2 | |
=sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5614 has a severity rating that indicates it can cause denial of service on affected systems.
To fix CVE-2006-5614, it is recommended to disable Internet Connection Sharing to mitigate exposure.
CVE-2006-5614 affects Microsoft Windows XP SP2 with Internet Connection Sharing enabled.
CVE-2006-5614 involves a remote denial of service attack that causes a crash of the svchost.exe process.
Yes, CVE-2006-5614 can be exploited remotely through a malformed DNS query.