Privilege escalation in Windows and Windows Server - CVE-2017-0021

 

Privilege escalation in Windows and Windows Server - CVE-2017-0021

Published: March 14, 2017 / Updated: March 14, 2017


Vulnerability identifier: #VU6030
CSH Severity: Medium
CVSS v4.0: CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:U/U:Green
CVE-ID: CVE-2017-0021
CWE-ID: CWE-20
Exploitation vector: Adjecent network
Exploit availability: No public exploit available
Vendor: Microsoft
Affected software:
Windows
Windows Server

Detailed vulnerability description

The vulnerability allows a remote attacker with access to guest operating system to execute arbitrary code on the host system.

The vulnerability exists due to input validation error when processing SMB packets in Windows Hyper-V. A remote attacker with access to guest system can send specially crafted SMB packets to the host system and execute arbitrary code on the host system.

Successful exploitation of this vulnerability may allow an attacker to compromise the host system.


How to mitigate CVE-2017-0021

Install updates from vendor's website.


Sources