Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2000-0305Microsoft Windows NT vulnerability

CWE-3994 documents4 sources
Severity
7.8HIGHNVD
EPSS
41.0%
top 2.62%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedMay 19
Latest updateApr 30

Description

Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the "IP Fragment Reassembly" vulnerability.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages2 packages

NVDbe/beos5.0

🔴Vulnerability Details

2
GHSA
GHSA-7864-p3j4-75vc: Windows 95, Windows 98, Windows 2000, Windows NT 42022-04-30
CVEList
CVE-2000-0305: Windows 95, Windows 98, Windows 2000, Windows NT 42000-07-12

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows - 'Jolt2.c' Denial of Service (MS00-029)2000-12-02
CVE-2000-0305 — Microsoft Windows NT vulnerability | cvebase