A flaw in the Universal Plug and Play (UPnP) facility in Microsoft's Windows XP could enable a hacker to launch a denial of service attack.
UPnP is a Microsoft-backed industry standard which uses web protocols and allows PCs, printers and wireless devices plugged into a network to automatically communicate with each other.
On Windows XP systems each UPnP request uses memory that is not being freed up because of a memory leak error.
A hacker could manipulate the error by exhausting the system's memory resources via repeatedly sending invalid UPnP data to the target system. The flaw also affects Windows 98 and ME systems.
Microsoft has been forced to issue a warning and a patch is now available, although the risk is classified as low.
Standard firewall practices, such as blocking ports 1900 and 5000, and activating the Windows XP default firewall would impede an attacker's ability to locate and attack the system.
The Microsoft advisory on this bug can be found here.
New ice grows faster but is also more vulnerable to weather and wind
With a crackdown on cheats is coming in November, PUBG rushes to fix matchmaking problems introduced in Update #22
New material uses carbon dioxide from the air to repair and reinforce itself
Apparent presence of scandium, vanadium and yttrium less than three light years from black hole 'an optical illusion'