Back to search
CVE-2005-3644
Published: Nov 17, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 and earlier, and possibly Windows XP SP1 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a DCE RPC request that specifies a large output buffer size, a variant of CVE-2006-6296, and a different vulnerability than CVE-2005-2120.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
911052
vendor-advisory
x_refsource_MSKB
15460
vdb-entry
x_refsource_BID
1015233
vdb-entry
x_refsource_SECTRACK
http://www.securiteam.com/exploits/6V00C15EKM.html
x_refsource_MISC
17595
third-party-advisory
x_refsource_SECUNIA
http://research.eeye.com/html/alerts/zeroday/20051116.html
x_refsource_MISC
1328
exploit
x_refsource_EXPLOIT-DB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now