Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2013-3182 | First vendor Publication | 2013-08-14 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:C) | |||
---|---|---|---|
Cvss Base Score | 7.8 | Attack Range | Network |
Cvss Impact Score | 6.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The Windows NAT Driver (aka winnat) service in Microsoft Windows Server 2012 does not properly validate memory addresses during the processing of ICMP packets, which allows remote attackers to cause a denial of service (memory corruption and system hang) via crafted packets, aka "Windows NAT Denial of Service Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-3182 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:18199 | |||
Oval ID: | oval:org.mitre.oval:def:18199 | ||
Title: | Vulnerability in Windows NAT Driver Could Allow Denial of Service - MS13-064 | ||
Description: | The Windows NAT Driver (aka winnat) service in Microsoft Windows Server 2012 does not properly validate memory addresses during the processing of ICMP packets, which allows remote attackers to cause a denial of service (memory corruption and system hang) via crafted packets, aka "Windows NAT Denial of Service Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2013-3182 | Version: | 3 |
Platform(s): | Microsoft Windows Server 2012 | Product(s): | |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Os | 1 |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2013-08-15 | IAVM : 2013-B-0089 - Microsoft Windows NAT Driver Denial of Service Vulnerability Severity : Category I - VMSKEY : V0040044 |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Truncated ICMPv6 denial of service attempt RuleID : 27611 - Revision : 2 - Type : PROTOCOL-ICMP |
2014-01-10 | Truncated ICMPv6 denial of service attempt RuleID : 27610 - Revision : 2 - Type : PROTOCOL-ICMP |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2013-08-14 | Name : The version of Windows NAT Driver installed on the remote host is affected by... File : smb_nt_ms13-064.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 12:35:37 |
|
2021-05-04 12:26:31 |
|
2021-04-22 01:32:04 |
|
2020-05-23 00:37:33 |
|
2018-10-13 05:18:40 |
|
2017-09-19 09:26:12 |
|
2016-10-20 21:22:58 |
|
2014-02-17 11:20:35 |
|
2014-01-19 21:29:26 |
|
2013-11-11 12:40:31 |
|
2013-11-04 21:27:52 |
|
2013-10-11 13:26:34 |
|
2013-08-14 17:20:09 |
|
2013-08-14 13:21:33 |
|