SB20170314166 - Hyper-V Denial of Service Vulnerability
Published: March 14, 2017 Updated: November 18, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Out-of-bounds memory access (CVE-ID: CVE-2017-0076)
The vulnerability allows a remote attacker with privileged access to guest operating system to perform a denial of service (DoS) attack.
The vulnerability exists due to out-of-bounds memory access in Microsoft Hyper-V Network Switch. An attacker with privileged access to guest operating system can use a specially crafted application to trigger out-of-bounds memory access and cause the host machine to crash.
Remediation
Install update from vendor's website.