An elevation of privilege vulnerability exists in Windows when LDAP request buffer lengths are improperly calculated. In a remote attack scenario, an attacker could exploit this vulnerability by running a specially crafted application to send malicious traffic to a Domain Controller, aka "LDAP Elevation of Privilege Vulnerability."
                
            References
                    | Link | Resource | 
|---|---|
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0166 | Mitigation Patch Vendor Advisory | 
| http://www.securityfocus.com/bid/97446 | Third Party Advisory VDB Entry | 
| http://www.securitytracker.com/id/1038245 | 
Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Information
                Published : 2017-04-12 07:59
Updated : 2019-10-02 17:03
NVD link : CVE-2017-0166
Mitre link : CVE-2017-0166
JSON object : View
CWE
                
                    
                        
                        CWE-131
                        
            Incorrect Calculation of Buffer Size
Products Affected
                microsoft
- windows_server_2016
 - windows_7
 - windows_rt_8.1
 - windows_vista
 - windows_10
 - windows_8.1
 - windows_server_2008
 - windows_server_2012
 


