PT-2011-1624 · Microsoft · Windows Server 2008+4
Vanhauser
·
Published
2011-01-07
·
Updated
2020-02-20
·
CVE-2010-4669
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Windows XP
Windows Server 2003
Windows Vista
Windows Server 2008
Windows 7
Description
The issue concerns the Neighbor Discovery protocol implementation in the IPv6 stack, allowing remote attackers to cause a denial of service by sending many Router Advertisement messages with different source addresses. This can lead to CPU consumption and system hang.
Recommendations
For Windows XP, consider disabling IPv6 to mitigate the risk of exploitation.
For Windows Server 2003, restrict access to the network to minimize the risk of receiving malicious Router Advertisement messages.
For Windows Vista, apply configuration changes to limit the impact of CPU consumption.
For Windows Server 2008, avoid using the IPv6 stack until the issue is resolved.
For Windows 7, consider temporarily disabling the IPv6 protocol to prevent system hang.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows 7
Windows Server 2003
Windows Server 2008
Windows Vista
Windows Xp