PT-2018-1648 · Microsoft · Hyper-V+1
Published
2018-09-11
·
Updated
2018-11-02
·
CVE-2018-8437
CVSS v3.1
6.2
Medium
| Vector | AV:A/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Microsoft Hyper-V (affected versions not specified)
Description
The issue is caused by insufficient input validation in the network switch of Microsoft Hyper-V on Windows operating systems. It may allow an attacker to cause a denial-of-service of the host operating system from a guest operating system using a specially crafted application.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
RCE
Improper Resource Release
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Hyper-V
Windows