CVE-2006-6264

Teredo creates trusted peer entries for arbitrary incoming source Teredo addresses, even if the low 32 bits represent an intranet address, which might allow remote attackers to send IPv4 traffic to intranet hosts that use non-RFC1918 addresses, bypassing IPv4 ingress filtering.
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:teredo:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:22

Type Values Removed Values Added
References () http://www.securityfocus.com/archive/1/452989/100/0/threaded - () http://www.securityfocus.com/archive/1/452989/100/0/threaded -
References () http://www.securityfocus.com/archive/1/452996/100/0/threaded - () http://www.securityfocus.com/archive/1/452996/100/0/threaded -
References () http://www.symantec.com/avcenter/reference/Teredo_Security.pdf - () http://www.symantec.com/avcenter/reference/Teredo_Security.pdf -

Information

Published : 2006-12-04 11:28

Updated : 2024-11-21 00:22


NVD link : CVE-2006-6264

Mitre link : CVE-2006-6264

CVE.ORG link : CVE-2006-6264


JSON object : View

Products Affected

microsoft

  • teredo