VYPR
Medium severity5.5NVD Advisory· Published Jun 13, 2006· Updated Apr 16, 2026

CVE-2006-2374

CVE-2006-2374

Description

The Server Message Block (SMB) driver (MRXSMB.SYS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows local users to cause a denial of service (hang) by calling the MrxSmbCscIoctlCloseForCopyChunk with the file handle of the shadow device, which results in a deadlock, aka the "SMB Invalid Handle Vulnerability."

Affected products

9
  • cpe:2.3:o:microsoft:windows_2000:-:sp4:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_2003_server:-:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:microsoft:windows_2003_server:-:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:-:*:*:*:*:*:itanium:*
    • cpe:2.3:o:microsoft:windows_2003_server:-:*:*:*:*:*:x64:*
    • cpe:2.3:o:microsoft:windows_2003_server:-:sp1:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:-:sp1:*:*:*:*:itanium:*
  • cpe:2.3:o:microsoft:windows_xp:-:*:*:*:professional:*:x64:*+ 2 more
    • cpe:2.3:o:microsoft:windows_xp:-:*:*:*:professional:*:x64:*
    • cpe:2.3:o:microsoft:windows_xp:-:sp1:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

14

News mentions

0

No linked articles in our index yet.