CVE-2007-3436: Medium severity Microsoft Windows XP vulnerability
Published Jun 27, 2007
·Updated
Microsoft MSN Messenger 4.7 on Windows XP allows remote attackers to cause a denial of service (resource consumption) via a flood of SIP INVITE requests to the port specified for voice conversation.
Affected Software
2 affected components
Microsoft Windows XP=gold
Microsoft MSN Messenger=4.7
Event History
Jun 27, 2007
CVE Published
12:30 AM
Data Sourced
12:30 AM
DescriptionWeaknessAffected Software
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-3436?
CVE-2007-3436 is classified as a denial of service vulnerability that can significantly impact system availability.
2
How do I fix CVE-2007-3436?
To fix CVE-2007-3436, it is recommended to upgrade Microsoft MSN Messenger to a version beyond 4.7.
3
What are the potential impacts of CVE-2007-3436?
The potential impact of CVE-2007-3436 includes resource exhaustion leading to a denial of service, affecting user communication.
4
Which software is affected by CVE-2007-3436?
CVE-2007-3436 affects Microsoft MSN Messenger version 4.7 running on Windows XP.
5
Can CVE-2007-3436 be exploited remotely?
Yes, CVE-2007-3436 can be exploited remotely through a flood of SIP INVITE requests.