Teredo creates trusted peer entries for arbitrary incoming source Teredo addresses, even if the low 32 bits represent an intranet address, which might allow remote attackers to send IPv4 traffic to intranet hosts that use non-RFC1918 addresses, bypassing IPv4 ingress filtering.
References
Configurations
History
21 Nov 2024, 00:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/archive/1/452989/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/452996/100/0/threaded - | |
References | () http://www.symantec.com/avcenter/reference/Teredo_Security.pdf - |
Information
Published : 2006-12-04 11:28
Updated : 2024-11-21 00:22
NVD link : CVE-2006-6264
Mitre link : CVE-2006-6264
CVE.ORG link : CVE-2006-6264
JSON object : View
Products Affected
microsoft
- teredo
CWE