Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

CVE-2024-38063 allows RCE on Windows machines through IPv6 packets

ErisaErisa Member

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-38063

An unauthenticated attacker could repeatedly send IPv6 packets, that include specially crafted packets, to a Windows machine which could enable remote code execution.

Impact: Remote Code Execution
Max Severity: Critical
Weakness: CWE-191: Integer Underflow (Wrap or Wraparound)
CVSS:3.1 9.8

Sign In or Register to comment.