← Back to browse · API

CVE-2011-2013

Severity
CRITICAL
CVSS
9.8
EPSS
0.33745
Risk score
51.01
CISA KEV
No
PoC
No
Published
2011-11-08
Modified
2024-10-17
First seen
2026-08-07
Aliases
EUVD-2011-2007, GHSA-Q323-HHW8-233J
Products
n/a:n/a n/a
Sources
euvd EUVD-2011-2007

Description

Integer overflow in the TCP/IP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to execute arbitrary code by sending a sequence of crafted UDP packets to a closed port, aka "Reference Counter Overflow Vulnerability."

References