PT-2017-1648 · Microsoft · Windows Server 2012 R2+5
Publicado
2017-03-14
·
Atualizado
2017-07-25
·
CVE-2017-0016
CVSS v2.0
7.1
Alta
| Vetor | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows versions 10 Gold, 1511, and 1607
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2016
Description
The issue is related to the improper handling of certain requests in SMBv2 and SMBv3 packets by the Server service, which can be exploited by remote attackers to execute arbitrary code via a crafted packet. This is also described as a null dereference denial of service vulnerability. The vulnerability is associated with pointer dereference errors in the Windows operating system's server service. Exploitation of the vulnerability could allow a remote attacker to access local files using specially crafted SMBv2 or SMBv3 packets.
Recommendations
For Microsoft Windows 10 Gold, 1511, and 1607, update the system to address the issue.
For Microsoft Windows 8.1, apply the recommended patch to fix the vulnerability.
For Microsoft Windows RT 8.1, install the latest security update to resolve the issue.
For Microsoft Windows Server 2012 R2, apply the necessary security patch to mitigate the risk.
For Microsoft Windows Server 2016, update the system with the latest available patch to fix the vulnerability.
As a temporary workaround, consider restricting access to the Server service to minimize the risk of exploitation.
Correção
RCE
DoS
NULL Pointer Dereference
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Windows
Windows 10
Windows 8.1
Windows Rt 8.1
Windows Server 2012 R2
Windows Server 2016