CVE-2019-1233High
Microsoft Exchange Denial of Service Vulnerability
🔗 CVE IDs covered (1)
📋 Description
A denial of service vulnerability exists in Microsoft Exchange Server software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could cause a remote denial of service against a system. Exploitation of the vulnerability requires that a specially crafted email be sent to a vulnerable Exchange server. The security update addresses the vulnerability by correcting how Microsoft Exchange Server handles objects in memory.
🎯 Affected products4
- Microsoft Exchange Server 2016 Cumulative Update 12
- Microsoft Exchange Server 2016 Cumulative Update 13
- Microsoft Exchange Server 2019 Cumulative Update 1
- Microsoft Exchange Server 2019 Cumulative Update 2
✅ Remediation
KB4515832 (Security Update)
🔗 References (6)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2019-1233
- patchhttps://www.microsoft.com/download/details.aspx?familyid=61a3f515-0eb8-4199-bf76-1fdf49036dfc
- referencehttps://support.microsoft.com/help/4515832
- patchhttps://www.microsoft.com/download/details.aspx?familyid=9679426b-c00f-48e3-b6a0-f76e31f03108
- patchhttps://www.microsoft.com/download/details.aspx?familyid=002926f8-2be9-4201-9ebf-c970c98cd2de
- patchhttps://www.microsoft.com/download/details.aspx?familyid=e3d8eb03-12d6-4b9d-9c2c-85521ab55493