CVE-2017-0164HighCVSS 4.4

Active Directory Denial of Service Vulnerability

Published
April 11, 2017
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

A denial of service vulnerability exists in Active Directory when an authenticated attacker sends malicious search queries. An attacker who successfully exploited this vulnerability could cause the Active Directory service to become nonresponsive. To exploit this vulnerability, an attacker must have valid credentials. An attacker could exploit this vulnerability by sending malicious search queries, resulting in denial of service. The update addresses the vulnerability by correcting how search queries are processed.

🎯 Affected products4

  • Windows 10 Version 1607 for 32-bit Systems
  • Windows 10 Version 1607 for x64-based Systems
  • Windows Server 2016
  • Windows Server 2016 (Server Core installation)

✅ Remediation

KB4015217 (Security Update)

🔗 References (2)