Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2018-8218

Опубликовано: 12 июн. 2018
Источник: msrc
CVSS3: 5.7
EPSS Низкий

Описание

Windows Hyper-V Denial of Service Vulnerability

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system. An attacker who successfully exploited the vulnerability could cause the host server to crash.

To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application that causes a host machine to crash.

The update addresses the vulnerability by modifying how virtual machines access the Hyper-V Network Switch.

Обновления

ПродуктСтатьяОбновление
Windows 10 Version 1709 for x64-based Systems
Windows Server, version 1709 (Server Core Installation)

Показывать по

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

N/A

Older Software Release

Exploitation Unlikely

DOS

Permanent

EPSS

Процентиль: 80%
0.01415
Низкий

5.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.7
nvd
около 7 лет назад

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers.

CVSS3: 7.7
github
около 3 лет назад

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows 10, Windows 10 Servers.

EPSS

Процентиль: 80%
0.01415
Низкий

5.7 Medium

CVSS3