PT-2007-4707 · Microsoft · Msn Messenger+1

Published

2007-06-27

·

Updated

2017-07-29

·

CVE-2007-3436

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft MSN Messenger version 4.7 on Windows XP
Description The issue allows remote attackers to cause a denial of service through resource consumption by sending a flood of SIP INVITE requests to the port specified for voice conversation.
Recommendations For Microsoft MSN Messenger version 4.7 on Windows XP, consider restricting access to the voice conversation port to minimize the risk of exploitation. As a temporary workaround, limiting the number of incoming SIP INVITE requests may help mitigate the issue until a more permanent solution is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-3436

Affected Products

Msn Messenger
Windows Xp