CVE-2020-0904HighCVSS 6.5
Windows Hyper-V Denial of Service Vulnerability
🔗 CVE IDs covered (1)
📋 Description
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system. To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application. The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests.
🎯 Affected products27
- Windows 10 Version 1607 for 32-bit Systems
- Windows 10 Version 1607 for x64-based Systems
- Windows 10 Version 1709 for 32-bit Systems
- Windows 10 Version 1709 for ARM64-based Systems
- Windows 10 Version 1709 for x64-based Systems
- Windows 10 Version 1803 for 32-bit Systems
- Windows 10 Version 1803 for ARM64-based Systems
- Windows 10 Version 1803 for x64-based Systems
- Windows 10 Version 1809 for 32-bit Systems
- Windows 10 Version 1809 for ARM64-based Systems
- Windows 10 Version 1809 for x64-based Systems
- Windows 10 Version 1903 for 32-bit Systems
- Windows 10 Version 1903 for ARM64-based Systems
- Windows 10 Version 1903 for x64-based Systems
- Windows 10 Version 1909 for 32-bit Systems
- Windows 10 Version 1909 for ARM64-based Systems
- Windows 10 Version 1909 for x64-based Systems
- Windows 10 Version 2004 for 32-bit Systems
- Windows 10 Version 2004 for ARM64-based Systems
- Windows 10 Version 2004 for x64-based Systems
- Windows Server 2016
- Windows Server 2016 (Server Core installation)
- Windows Server 2019
- Windows Server 2019 (Server Core installation)
- Windows Server, version 1903 (Server Core installation)
- Windows Server, version 1909 (Server Core installation)
- Windows Server, version 2004 (Server Core installation)
✅ Remediation
KB4577032 (Security Update) KB4570333 (Security Update) KB4574727 (Security Update) KB4577041 (Security Update) KB4571756 (Security Update) KB4577015 (Security Update)
🔗 References (11)
- advisoryhttps://msrc.microsoft.com/update-guide/vulnerability/CVE-2020-0904
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4577032
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4570333
- referencehttps://support.microsoft.com/help/4570333
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4574727
- referencehttps://support.microsoft.com/help/4574727
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4577041
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4571756
- referencehttps://support.microsoft.com/help/4571756
- patchhttps://catalog.update.microsoft.com/v7/site/Search.aspx?q=KB4577015
- referencehttps://support.microsoft.com/help/4577015