Beschreibung
Multiple serious vulnerabilities have been found in Windows Hyper-V. Malicious users can exploit these vulnerabilities to cause a denial of service, execute arbitrary code and obtain sensitive information.
Below is a complete list of vulnerabilities:
- Multiple validation errors of input from a privileged user on a guest operating system in Network Switch on a host server can be exploited remotely via a specially designed Office document to cause a denial of service;
- Several cases of improper validations of vSMB packet data on a host server can be exploited remotely via a specially designed application run inside a virtual machine to execute arbitrary code in the host operating system;
- An improper input validation of data received from an authenticated user on a guest operating system done on a host server can be exploited remotely via a specially designed application to execute arbitrary code on the host operating system;
- An unknown vulnerability can be exploited remotely via a specially designed application to obtain sensitive information from the host OS memory.
Ursprüngliche Informationshinweise
- CVE-2017-0051
- CVE-2017-0021
- CVE-2017-0095
- CVE-2017-0096
- CVE-2017-0097
- CVE-2017-0098
- CVE-2017-0099
- CVE-2017-0109
- CVE-2017-0074
- CVE-2017-0075
- CVE-2017-0076
CVE Liste
- CVE-2017-0051 critical
- CVE-2017-0021 critical
- CVE-2017-0095 critical
- CVE-2017-0096 critical
- CVE-2017-0097 critical
- CVE-2017-0098 critical
- CVE-2017-0099 critical
- CVE-2017-0109 critical
- CVE-2017-0074 critical
- CVE-2017-0075 critical
- CVE-2017-0076 critical
KB Liste
Mehr erfahren
Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com
Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!