Lucene search

K
cvelistMicrosoftCVELIST:CVE-2017-0016
HistoryMar 17, 2017 - 12:00 a.m.

CVE-2017-0016

2017-03-1700:00:00
microsoft
www.cve.org
1

6.4 Medium

AI Score

Confidence

High

0.45 Medium

EPSS

Percentile

97.4%

Microsoft Windows 10 Gold, 1511, and 1607; Windows 8.1; Windows RT 8.1; Windows Server 2012 R2, and Windows Server 2016 do not properly handle certain requests in SMBv2 and SMBv3 packets, which allows remote attackers to execute arbitrary code via a crafted SMBv2 or SMBv3 packet to the Server service, aka “SMBv2/SMBv3 Null Dereference Denial of Service Vulnerability.”

CNA Affected

[
  {
    "product": "SMBv2/SMBv3",
    "vendor": "Microsoft Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "Windows 10 Gold, 1511, and 1607; Windows 8.1; Windows RT 8.1; Windows Server 2012 R2, and Windows Server 2016"
      }
    ]
  }
]

6.4 Medium

AI Score

Confidence

High

0.45 Medium

EPSS

Percentile

97.4%