CVE-2012-0006

Description

The DNS server in Microsoft Windows Server 2003 SP2 and Server 2008 SP2, R2, and R2 SP1 does not properly handle objects in memory during record lookup, which allows remote attackers to cause a denial of service (daemon restart) via a crafted query, aka DNS Denial of Service Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
62.574

Associated Vulnerability

VulnerabilityOS Platform
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2003 (KB2647170)Windows
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2008 (KB2647170)Windows
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2003 x64 Edition (KB2647170)Windows
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2008 x64 Edition (KB2647170)Windows
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2008 R2 x64 Edition (KB2647170)Windows
ms12-017: vulnerability in dns server could allow denial of service: march 13, 2012 for Windows Server 2008 R2 x64 Edition (KB2647170) for SP1Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-11566Security Update for Windows Server 2008 (KB2647170)
PATCH-11568Security Update for Windows Server 2008 x64 Edition (KB2647170)
PATCH-11570Security Update for Windows Server 2008 R2 x64 Edition (KB2647170)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234