PT-2016-2175 · Microsoft · Windows Server 2012

Published

2016-06-16

·

Updated

2019-05-08

·

CVE-2016-3227

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Windows Server 2012 Gold and R2
Description The issue is related to a use-after-free vulnerability in the DNS Server component, which allows remote attackers to execute arbitrary code via crafted requests. This vulnerability can be exploited by sending specially formed requests to the DNS Server.
Recommendations For Microsoft Windows Server 2012 Gold and R2, apply the necessary patches or updates to fix the use-after-free vulnerability in the DNS Server component. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-01528
CVE-2016-3227

Affected Products

Windows Server 2012