Vulnerability Name: | CVE-2006-0488 (CCN-24471) | ||||||||
Assigned: | 2006-01-24 | ||||||||
Published: | 2006-01-24 | ||||||||
Updated: | 2018-10-19 | ||||||||
Summary: | The VDM (Virtual DOS Machine) emulation environment for MS-DOS applications in Windows 2000, Windows XP SP2, and Windows Server 2003 allows local users to read the first megabyte of memory and possibly obtain sensitive information, as demonstrated by dumper.asm. | ||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N) 1.7 Low (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:U/RC:UR)
1.7 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N/E:U/RL:U/RC:UR)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Tue Jan 24 2006 - 06:01:53 CST Windows mem leakage Source: MITRE Type: CNA CVE-2006-0488 Source: CCN Type: OSVDB ID: 27922 Microsoft Virtual DOS Machine (VDM) Local Memory Disclosure Source: BUGTRAQ Type: UNKNOWN 20060124 Windows mem leakage Source: XF Type: UNKNOWN win-vdm-information-disclosure(24471) Source: XF Type: UNKNOWN windows-vdm-obtain-information(24471) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |