PT-2024-6257 · Microsoft · Windows+2

Published

2024-09-10

·

Updated

2024-09-17

·

CVE-2024-38236

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified) DHCP Server Service (affected versions not specified) Remote Desktop Licensing Service (affected versions not specified)
Description The issue is related to a denial-of-service vulnerability that can be exploited by remote attackers, potentially causing a system to become unresponsive. It is also associated with weaknesses in the authentication procedure of the Remote Desktop Licensing Service in Windows operating systems.
Recommendations For Windows, consider restricting access to the Remote Desktop Licensing Service until a fix is available. For DHCP Server Service, as a temporary workaround, consider disabling the service until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

BDU:2024-07204
CVE-2024-38236

Affected Products

Dhcp Server Service
Remote Desktop Licensing Service
Windows