CVE-2001-0006
HIGHWindows NT 4.0 - Denial of Service via Winsock2ProtocolCatalogMutex Permission Modification
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0006. PoCs published by Arne Vidstrom.
AI-analyzed exploit summary This exploit modifies the DACL of the Winsock2ProtocolCatalogMutex to deny all access, effectively disabling network connectivity on Windows NT 4.0. It leverages incorrect Mutex permissions to achieve a local denial of service.
Description
The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability.
Exploits (1)
This exploit modifies the DACL of the Winsock2ProtocolCatalogMutex to deny all access, effectively disabling network connectivity on Windows NT 4.0. It leverages incorrect Mutex permissions to achieve a local denial of service.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H