CVE-2023-36435HighCVSS 7.5

Microsoft QUIC Denial of Service Vulnerability

Published
October 10, 2023
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

Where can I find more information? Please see the GitHub Advisory relating to this vulnerability here: https://github.com/microsoft/msquic/security/advisories/GHSA-fr44-546p-7xcp#event-111622

🎯 Affected products8

  • .NET 7.0
  • PowerShell 7.3
  • Windows 11 Version 22H2 for ARM64-based Systems
  • Windows 11 Version 22H2 for x64-based Systems
  • Windows 11 version 21H2 for ARM64-based Systems
  • Windows 11 version 21H2 for x64-based Systems
  • Windows Server 2022
  • Windows Server 2022 (Server Core installation)

✅ Remediation

KBRelease Notes (Security Update) — fixed build 7.3.9 KB5031364 (Security Update) — fixed build 10.0.20348.2031 KB5031358 (Security Update) — fixed build 10.0.22000.2538 KB5031354 (Security Update) — fixed build 10.0.22621.2428 KB5032875 (Security Update) — fixed build 7.0.13

🔗 References (11)