| DC Field | Value | Language |
|---|---|---|
| dc.contributor.author | Kerutt, Bennet | - |
| dc.contributor.author | Kaven, Sascha | - |
| dc.contributor.author | Schwarz, Monina | - |
| dc.contributor.author | Lorenz, Bastian | - |
| dc.contributor.author | Skwarek, Volker | - |
| dc.date.accessioned | 2026-08-20T08:39:06Z | - |
| dc.date.available | 2026-08-20T08:39:06Z | - |
| dc.date.issued | 2026 | - |
| dc.identifier.issn | 2190-846X | en_US |
| dc.identifier.uri | https://hdl.handle.net/20.500.12738/19854 | - |
| dc.description.abstract | CVE-2024-38063 is a critical zero-click remote code execution (RCE) vulnerability within the Microsoft Windows IPv6 network stack, holding a CVSS score of 9.8. Exploitable by unauthenticated adversaries via specially crafted IPv6 packets. The vulnerability stems from an integer underflow within the fragment reassembly logic, which is triggered by the improper handling of batched packet processing during extension header parsing. This extended abstract presents a comprehensive analysis of the vulnerability's root cause, establishing the quantitative thresholds required for reliable exploitation based on packet coalescing behaviors. Furthermore, an examination of Microsoft's patch implementation reveals an undocumented rollback mechanism utilizing internal feature flags. This mechanism conditionally retained the vulnerable code path for three months post-patch. Corroborated across multiple recent vulnerabilities, this ` "reversible security" paradigm exposes a systematic patching strategy that contradicts official security policies and introduces novel attack surfaces. | en |
| dc.language.iso | en | en_US |
| dc.publisher | Gesellschaft für Informatik | en_US |
| dc.relation.ispartof | SIDAR Reports | en_US |
| dc.subject.ddc | 004: Informatik | en_US |
| dc.title | Reversible security : a case study of CVE-2024-38063 and the implications of patch rollback mechanisms | en |
| dc.type | inProceedings | en_US |
| dc.relation.conference | SPRING graduate workshop 2026 | en_US |
| dc.description.version | AlternativeReviewed | en_US |
| local.contributorCorporate.editor | Gesellschaft für Informatik. Fachgruppe Erkennung und Beherrschung von Vorfällen der Informationssicherheit | - |
| local.contributorPerson.editor | Ohm, Marc | - |
| tuhh.container.endpage | 34 | en_US |
| tuhh.container.startpage | 32 | en_US |
| tuhh.oai.show | true | en_US |
| tuhh.publication.institute | Forschungs- und Transferzentrum CyberSec | en_US |
| tuhh.publication.institute | Fakultät Nachhaltige Ingenieurwissenschaften | en_US |
| tuhh.publisher.url | https://fg-sidar.gi.de/fileadmin/FG/SIDAR/Reports/SIDAR-Report-SR-2026-01.pdf#page=32 | - |
| tuhh.publisher.url | https://fg-sidar.gi.de/fileadmin/FG/SIDAR/Reports/SIDAR-Report-SR-2026-01.pdf | - |
| tuhh.publisher.url | https://fg-sidar.gi.de/publikationen/sidar-reports | - |
| tuhh.relation.ispartofseries | Proceedings of the 16th graduate workshop of the special interest group Security - Intrusion Detection and Response (SIDAR) of the German Informatics Society (GI), SPRING 2026 | en_US |
| tuhh.type.opus | InProceedings (Aufsatz / Paper einer Konferenz etc.) | - |
| dc.type.casrai | Conference Paper | - |
| dc.type.dini | contributionToPeriodical | - |
| dc.type.driver | contributionToPeriodical | - |
| dc.type.status | info:eu-repo/semantics/publishedVersion | en_US |
| dcterms.DCMIType | Text | - |
| item.tuhhseriesid | Proceedings of the 16th graduate workshop of the special interest group Security - Intrusion Detection and Response (SIDAR) of the German Informatics Society (GI), SPRING 2026 | - |
| item.creatorGND | Kerutt, Bennet | - |
| item.creatorGND | Kaven, Sascha | - |
| item.creatorGND | Schwarz, Monina | - |
| item.creatorGND | Lorenz, Bastian | - |
| item.creatorGND | Skwarek, Volker | - |
| item.creatorOrcid | Kerutt, Bennet | - |
| item.creatorOrcid | Kaven, Sascha | - |
| item.creatorOrcid | Schwarz, Monina | - |
| item.creatorOrcid | Lorenz, Bastian | - |
| item.creatorOrcid | Skwarek, Volker | - |
| item.seriesref | Proceedings of the 16th graduate workshop of the special interest group Security - Intrusion Detection and Response (SIDAR) of the German Informatics Society (GI), SPRING 2026 | - |
| item.openairecristype | http://purl.org/coar/resource_type/c_5794 | - |
| item.grantfulltext | none | - |
| item.languageiso639-1 | en | - |
| item.openairetype | inProceedings | - |
| item.fulltext | No Fulltext | - |
| item.cerifentitytype | Publications | - |
| crisitem.author.dept | Department Wirtschaftsingenieurwesen (ehemalig, aufgelöst 10.2025) | - |
| crisitem.author.dept | Department Wirtschaftsingenieurwesen (ehemalig, aufgelöst 10.2025) | - |
| crisitem.author.orcid | 0009-0001-0498-4460 | - |
| crisitem.author.orcid | 0000-0002-7260-6832 | - |
| crisitem.author.orcid | 0000-0001-5065-1029 | - |
| crisitem.author.parentorg | Fakultät Life Sciences (ehemalig, aufgelöst 10.2025) | - |
| crisitem.author.parentorg | Fakultät Life Sciences (ehemalig, aufgelöst 10.2025) | - |
| Appears in Collections: | Publications without full text | |
Add Files to Item
Note about this record
Export
Items in REPOSIT are protected by copyright, with all rights reserved, unless otherwise indicated.