CVE-2007-3038

The Teredo interface in Microsoft Windows Vista and Vista x64 Edition does not properly handle certain network traffic, which allows remote attackers to bypass firewall blocking rules and obtain sensitive information via crafted IPv6 traffic, aka "Windows Vista Firewall Blocking Rule Information Disclosure Vulnerability."
References
Link Resource
http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html
http://osvdb.org/35952
http://secunia.com/advisories/26001
http://www.kb.cert.org/vuls/id/101321 US Government Resource
http://www.securityfocus.com/archive/1/473294/100/0/threaded
http://www.securityfocus.com/bid/24779
http://www.securitytracker.com/id?1018354
http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-005.txt
http://www.us-cert.gov/cas/techalerts/TA07-191A.html US Government Resource
http://www.vupen.com/english/advisories/2007/2480
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-038
https://exchange.xforce.ibmcloud.com/vulnerabilities/35322
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1884
http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html
http://osvdb.org/35952
http://secunia.com/advisories/26001
http://www.kb.cert.org/vuls/id/101321 US Government Resource
http://www.securityfocus.com/archive/1/473294/100/0/threaded
http://www.securityfocus.com/bid/24779
http://www.securitytracker.com/id?1018354
http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-005.txt
http://www.us-cert.gov/cas/techalerts/TA07-191A.html US Government Resource
http://www.vupen.com/english/advisories/2007/2480
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-038
https://exchange.xforce.ibmcloud.com/vulnerabilities/35322
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1884
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_vista:*:*:x64:*:*:*:*:*

History

21 Nov 2024, 00:32

Type Values Removed Values Added
References () http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html - () http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html -
References () http://osvdb.org/35952 - () http://osvdb.org/35952 -
References () http://secunia.com/advisories/26001 - () http://secunia.com/advisories/26001 -
References () http://www.kb.cert.org/vuls/id/101321 - US Government Resource () http://www.kb.cert.org/vuls/id/101321 - US Government Resource
References () http://www.securityfocus.com/archive/1/473294/100/0/threaded - () http://www.securityfocus.com/archive/1/473294/100/0/threaded -
References () http://www.securityfocus.com/bid/24779 - () http://www.securityfocus.com/bid/24779 -
References () http://www.securitytracker.com/id?1018354 - () http://www.securitytracker.com/id?1018354 -
References () http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-005.txt - () http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-005.txt -
References () http://www.us-cert.gov/cas/techalerts/TA07-191A.html - US Government Resource () http://www.us-cert.gov/cas/techalerts/TA07-191A.html - US Government Resource
References () http://www.vupen.com/english/advisories/2007/2480 - () http://www.vupen.com/english/advisories/2007/2480 -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-038 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-038 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35322 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35322 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1884 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1884 -

Information

Published : 2007-07-10 22:30

Updated : 2024-11-21 00:32


NVD link : CVE-2007-3038

Mitre link : CVE-2007-3038

CVE.ORG link : CVE-2007-3038


JSON object : View

Products Affected

microsoft

  • windows_vista