CVE-2014-0254: Input Validation
The IPv6 implementation in Microsoft Windows 8, Windows Server 2012, and Windows RT does not properly validate packets, which allows remote attackers to cause a denial of service (system hang) via crafted ICMPv6 Router Advertisement packets, aka "TCP/IP Version 6 (IPv6) Denial of Service Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0254?
CVE-2014-0254 has a severity rating that indicates it can lead to a denial of service due to system hang.
How do I fix CVE-2014-0254?
To remediate CVE-2014-0254, apply the security patches provided by Microsoft for affected versions of Windows.
Which systems are affected by CVE-2014-0254?
CVE-2014-0254 affects Microsoft Windows 8, Windows Server 2012, and Windows RT.
What type of vulnerability is CVE-2014-0254?
CVE-2014-0254 is categorized as a denial of service vulnerability related to improper validation of IPv6 packets.
Can CVE-2014-0254 be exploited remotely?
Yes, CVE-2014-0254 can be exploited remotely via crafted ICMPv6 Router Advertisement packets.