Описание
Windows Schannel Remote Code Execution Vulnerability
Heap-based buffer overflow in Windows Schannel allows an unauthorized attacker to execute code over a network.
FAQ
How could an attacker exploit this vulnerability?
An attacker could host a malicious server and convince a user to connect to it from an affected client. When the client processes the server's response, the attacker could execute code on the client system. User interaction is required.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| Windows Server 2022 | ||
| Windows Server 2022 (Server Core installation) | ||
| Windows 11 Version 23H2 for ARM64-based Systems | ||
| Windows 11 Version 23H2 for x64-based Systems | ||
| Windows 11 Version 24H2 for ARM64-based Systems | ||
| Windows 11 Version 24H2 for x64-based Systems | ||
| Windows Server 2025 | ||
| Windows Server 2025 (Server Core installation) | ||
| Windows 11 Version 25H2 for ARM64-based Systems | ||
| Windows 11 Version 25H2 for x64-based Systems |
Показывать по
Возможность эксплуатации
Publicly Disclosed
Exploited
Latest Software Release
EPSS
8.8 High
CVSS3
Связанные уязвимости
Heap-based buffer overflow in Windows Schannel allows an unauthorized attacker to execute code over a network.
Heap-based buffer overflow in Windows Schannel allows an unauthorized attacker to execute code over a network.
EPSS
8.8 High
CVSS3