Back

CVE-2001-0006

HIGH

The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability.

Published: Feb 12, 2001 Modified: Apr 16, 2026
CWE-732

CVSS Metrics

CVSSv3
Attack Vector: LOCAL Attack Complexity: LOW Privileges Required: LOW User Interaction: NONE Scope: UNCHANGED Confidentiality Impact: NONE Integrity Impact: HIGH Availability Impact: HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

Affected Products (1)

Vendor Product Version
microsoft windows_nt 4.0

GitHub Security Advisory GHSA-cgm8-c3pr-78fr

The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control...

Risk Scores

CVSS Score 7.1 / 10
EPSS Score 0.13%

Top 68% most likely to be exploited

Threat Score 28.4 / 100

Data Sources

NVD EPSS GitHub