CVE-2006-3840 Details
Description
The SMB Mailslot parsing functionality in PAM in multiple ISS products with XPU (24.39/1.78/epj/x.x.x.1780), including Proventia A, G, M, Server, and Desktop, BlackICE PC and Server Protection 3.6, and RealSecure 7.0, allows remote attackers to cause a denial of service (infinite loop) via a crafted SMB packet that is not properly handled by the SMB_Mailslot_Heap_Overflow decode.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No CVSS 3.x data is available for this CVE.
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-399 | Resource Management Errors | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| iss blackice pc protection | 3.6cpk |
CPE
Remediation
| |
| iss blackice server protection | 3.6cpk |
CPE
Remediation
| |
| iss proventia desktop | 8.0.675.1790 8.0.812.1790 |
CPE
Remediation
| |
| iss realsecure desktop | 7.0epk |
CPE
Remediation
| |
| iss realsecure network | 7.0 |
CPE
Remediation
| |
| iss realsecure server sensor | 7.0 |
CPE
Remediation
| |
| iss proventia a series xpu | All versions |
CPE
Remediation
| |
| iss proventia g series xpu | All versions |
CPE
Remediation
| |
| iss proventia m series xpu | All versions |
CPE
Remediation
| |
| iss proventia server | 1.0.914.1880 |
CPE
Remediation
| |
Change History
7 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 16, 2026 | CVE Modified | [email protected] |
| Apr 16, 2026 | [email protected] | |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Oct 17, 2018 | CVE Modified | [email protected] |
| Jul 20, 2017 | CVE Modified | [email protected] |
| Jul 28, 2006 | Initial Analysis | [email protected] |