CVE-2006-0021

Microsoft Windows XP <SP2 - DoS

Title source: llm

Description

Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."

Exploits (2)

exploitdb WORKING POC VERIFIED
by Firestorm · cdoswindows
https://www.exploit-db.com/exploits/1603
exploitdb WORKING POC VERIFIED
by Alexey Sintsov · c++doswindows
https://www.exploit-db.com/exploits/1599

References (16)

Scores

EPSS 0.6966
EPSS Percentile 98.7%

Details

CWE
CWE-119
Status published
Products (8)
microsoft/windows_2003_server datacenter_64-bit sp1
microsoft/windows_2003_server enterprise (2 CPE variants)
microsoft/windows_2003_server enterprise_64-bit
microsoft/windows_2003_server r2 (3 CPE variants)
microsoft/windows_2003_server standard (2 CPE variants)
microsoft/windows_2003_server standard_64-bit
microsoft/windows_2003_server web (2 CPE variants)
microsoft/windows_xp (12 CPE variants)
Published Feb 14, 2006
Tracked Since Feb 18, 2026