PT-2020-4269 · Microsoft · Windows

Published

2020-10-13

·

Updated

2023-12-31

·

CVE-2020-16894

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Windows (affected versions not specified)
Description: A denial of service issue exists due to improper input validation in Windows Network Address Translation (NAT) when a privileged user on a guest operating system interacts with a host server. This could allow an attacker, who already has a privileged account on a guest operating system running as a virtual machine, to cause the host server to crash by running a specially crafted application. The vulnerability is related to a buffer overflow in memory when Windows NAT is accessed.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2020-04761
CVE-2020-16894

Affected Products

Windows