PT-2019-1125 · Microsoft · Windows 10 Servers+3
Published
2019-01-08
·
Updated
2020-08-24
·
CVE-2019-0547
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Windows 10
Windows 10 Servers
Description:
A memory corruption issue exists due to a buffer overflow in the Windows DHCP client. This can be exploited by an attacker sending specially crafted DHCP responses, potentially allowing remote code execution. The vulnerability may be exploited by remote attackers to execute arbitrary code and affect the system.
Recommendations:
For Windows 10 and Windows 10 Servers, apply the necessary patches or updates to fix the memory corruption vulnerability in the DHCP client.
As a temporary workaround, consider restricting DHCP response handling until a patch is available.
Avoid using the DHCP client in untrusted networks until the issue is resolved.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows
Windows 10
Windows 10 Servers
Windows Dhcp Client