Privilege escalation in Microsoft Windows and Windows Server - CVE-2017-0095

 

Privilege escalation in Microsoft Windows and Windows Server - CVE-2017-0095

Published: March 14, 2017


Vulnerability identifier: #VU6031
CSH Severity: Medium
CVSS v4: 8.6 [CVSS:4.0/AV:A/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-0095
CWE-ID: CWE-20
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker with access to guest operating system to execute arbitrary code on the host system.

The vulnerability exists due to input validation error when processing SMB packets in Windows Hyper-V. A remote attacker with access to guest system can send specially crafted SMB packets to the host system and execute arbitrary code on the host system.

Successful exploitation of this vulnerability may allow an attacker to compromise the host system.


Affected software

Microsoft Windows
Windows Server

How to mitigate CVE-2017-0095

Install updates from vendor's website.



External References

Related Security Bulletins