PT-2019-3053 · Microsoft · Windows Dhcp Server Service+1

Published

2019-08-13

·

Updated

2024-05-29

·

CVE-2019-1206

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Windows Server DHCP service (affected versions not specified)
Description A memory corruption issue exists in the Windows Server DHCP service, allowing an attacker to send specially crafted packets to a DHCP failover server, potentially causing the DHCP service to become nonresponsive. The attack requires the DHCP server to be set to failover mode. The vulnerability is related to how DHCP failover servers handle network packets.
Recommendations To resolve the issue, apply the security update that corrects how DHCP failover servers handle network packets. As a temporary workaround, consider restricting access to the DHCP server when it is set to failover mode until the security update is applied.

Fix

DoS

Buffer Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2019-03035
CVE-2019-1206

Affected Products

Windows
Windows Dhcp Server Service