CVE-2024-38126

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Aug 13, 2024
Updated: Aug 16, 2024
CWE ID 476

Summary

CVE-2024-38126 is a newly disclosed vulnerability affecting Windows Network Address Translation (NAT). This issue enables an attacker to cause a denial of service condition by sending maliciously crafted packets to a targeted system. The vulnerability lies in the way NAT handles certain types of traffic, leading to an excessive consumption of system resources and potentially crashing the NAT service. This can result in a complete loss of connectivity for devices relying on that NAT instance. Organizations running Windows systems should apply the forthcoming patch as soon as it becomes available to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows
  • Microsoft Windows 11

Affected Vendors

  • Microsoft