AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-0034

HIGH · CVSS 7.5 EPSS 31.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-05-10 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-0034
Severity
HIGH
CVSS
7.5
EPSS
31.40%
Microsoft Windows

Original NVD Description

Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllocate function, aka the MSDTC Invalid Memory Access Vulnerability.