vendor:
Windows 7
by:
Byoungyoung Lee
7.8
CVSS
HIGH
Denial of Service
20
CWE
Product Name: Windows 7
Affected Version From: Windows 7 32bit
Affected Version To: Windows 7 32bit
Patch Exists: Yes
Related CWE: CVE-2011-1965
CPE: o:microsoft:windows_7::-:32bit
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7 32bit
2011
MS11-064 : Vulnerabilities in TCP/IP Stack Could Allow Denial of Service
Byoungyoung Lee developed an exploit for Windows 7 32bit, fully patched until Aug 2011, which could allow a denial of service attack. The exploit uses a combination of a long filename and a short filename to cause a kernel panic. The exploit is available at http://exploitshop.wordpress.com/2011/09/07/ms11-064-vulnerabilities-in-tcpip-stack-could-allow-denial-of-service-2563894/
Mitigation:
Microsoft released a patch for this vulnerability in October 2011. It is recommended to install the patch as soon as possible.