CVE-2011-0654 is a critical integer underflow vulnerability in the CIFS browser service (Mrxsmb.sys or bowser.sys) affecting various versions of Microsoft Windows, including XP, Server 2003, Vista, Server 2008, and Windows 7. This flaw, dubbed "Browser Pool Corruption Vulnerability," allows remote unauthenticated attackers to execute arbitrary code or cause a denial of service (system crash) via a specially crafted BROWSER ELECTION message, leading to a heap-based buffer overflow. With a CVSS score of 10.0 and a FAUCET Risk Score of 99/100, this vulnerability is considered extremely severe due to its network-based attack vector, low complexity, and complete impact on confidentiality, integrity, and availability. While not listed in CISA's KEV catalog, exploit code is publicly available, including a Metasploit module for denial of service and an ExploitDB entry for remote heap overflow, indicating its exploitability. Despite the availability of exploit code, there is minimal community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:r2:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:r2:x64:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:sp2:itanium:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2003:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.