The Microsoft Server Message Block 2.0 and 3.0 (SMBv2/SMBv3) client in Windows 8.1 and RT 8.1 and Windows Server 2012 R2 allows a denial of service vulnerability due to how specially crafted requests are handled, aka "SMBv2/SMBv3 Null Dereference Denial of Service Vulnerability".
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0833 | Patch Vendor Advisory |
http://www.securitytracker.com/id/1040375 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/102924 | Third Party Advisory VDB Entry |
https://www.exploit-db.com/exploits/44189/ | Exploit Third Party Advisory VDB Entry |
https://github.com/KINGSABRI/CVE-in-Ruby/tree/master/CVE-2018-0833 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-02-14 18:29
Updated : 2019-03-13 08:23
NVD link : CVE-2018-0833
Mitre link : CVE-2018-0833
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
microsoft
- windows_rt_8.1
- windows_server_2012
- windows_8.1