Lucene search

K
mscveMicrosoftMS:CVE-2023-38171
HistoryOct 10, 2023 - 7:00 a.m.

Microsoft QUIC Denial of Service Vulnerability

2023-10-1007:00:00
Microsoft
msrc.microsoft.com
44
microsoft
quic
denial of service

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.003

Percentile

68.8%

Affected configurations

Vulners
Node
microsoftpowershellRange<7.3.9
OR
microsoft.netRange<7.0.12
OR
microsoftwindows_11_22h2Range<10.0.22621.2428
OR
microsoftwindows_11_22h2Range<10.0.22621.2428
OR
microsoftwindows_11_21h2Range<10.0.22000.2538
OR
microsoftwindows_11_21h2Range<10.0.22000.2538
OR
microsoftwindows_server_2022Range<10.0.20348.2031
OR
microsoftwindows_server_2022Range<10.0.20348.2031
OR
microsoftvisual_studioRange<17.7.5
OR
microsoftvisual_studioRange<17.6.8
OR
microsoftvisual_studio_2022Range<17.4.12
OR
microsoftvisual_studio_2022Range<17.2.20
VendorProductVersionCPE
microsoftpowershell*cpe:2.3:a:microsoft:powershell:*:*:*:*:*:*:*:*
microsoft.net*cpe:2.3:a:microsoft:.net:*:*:*:*:*:*:*:*
microsoftwindows_11_22h2*cpe:2.3:o:microsoft:windows_11_22h2:*:*:*:*:*:*:*:*
microsoftwindows_11_21h2*cpe:2.3:o:microsoft:windows_11_21h2:*:*:*:*:*:*:*:*
microsoftwindows_server_2022*cpe:2.3:o:microsoft:windows_server_2022:*:*:*:*:*:*:*:*
microsoftvisual_studio*cpe:2.3:a:microsoft:visual_studio:*:*:*:*:*:*:*:*
microsoftvisual_studio_2022*cpe:2.3:a:microsoft:visual_studio_2022:*:*:*:*:*:*:*:*

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.003

Percentile

68.8%