Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.811277
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Windows Multiple Vulnerabilities (KB4034658)
Zusammenfassung:This host is missing a critical security; update according to Microsoft KB4034658
Beschreibung:Summary:
This host is missing a critical security
update according to Microsoft KB4034658

Vulnerability Insight:
Multiple flaws exist due to:

- An error in the way JavaScript engines render when handling objects in memory
in Microsoft browsers.

- An error when Windows Search handles objects in memory.

- An error when Microsoft Hyper-V Network Switch on a host server fails to
properly validate input from a privileged user on a guest operating system.

- An error when Internet Explorer fails to validate User Mode Code Integrity (UMCI)
policies.

- An error in Microsoft Edge that could allow an attacker to escape from the
AppContainer sandbox in the browser.

- An error when Microsoft Edge improperly handles objects in memory.

- An error when the win32k component improperly provides kernel information.

- An error when Microsoft Windows PDF Library improperly handles objects in
memory.

- An error in the Microsoft JET Database Engine that could allow remote code
execution on an affected system.

- An error in Windows when the Win32k component fails to properly handle objects
in memory.

- An error in Windows Input Method Editor (IME) when IME improperly handles
parameters in a method of a DCOM class.

- An error when Microsoft Windows improperly handles NetBIOS packets.

- This security update resolves a vulnerability in Windows Error Reporting
(WER).

Vulnerability Impact:
Successful exploitation will allow
attacker to gain the same user rights as the current user, take control
of the affected system, cause the host server to crash, run unsigned
malicious code as though it were signed by a trusted source, run processes
in an elevated context, install programs. View, change, or delete data
or create new accounts with full user rights and gain access to sensitive
information.

Affected Software/OS:
- Microsoft Windows 10 Version 1607 x32/x64

- Microsoft Windows Server 2016

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-0174
BugTraq ID: 100038
http://www.securityfocus.com/bid/100038
http://www.securitytracker.com/id/1039109
Common Vulnerability Exposure (CVE) ID: CVE-2017-0250
BugTraq ID: 98100
http://www.securityfocus.com/bid/98100
http://www.securitytracker.com/id/1039090
Common Vulnerability Exposure (CVE) ID: CVE-2017-0293
BugTraq ID: 100039
http://www.securityfocus.com/bid/100039
http://www.securitytracker.com/id/1039092
Common Vulnerability Exposure (CVE) ID: CVE-2017-8503
BugTraq ID: 99395
http://www.securityfocus.com/bid/99395
http://www.securitytracker.com/id/1039101
Common Vulnerability Exposure (CVE) ID: CVE-2017-8591
BugTraq ID: 99430
http://www.securityfocus.com/bid/99430
http://www.securitytracker.com/id/1039097
Common Vulnerability Exposure (CVE) ID: CVE-2017-8593
BugTraq ID: 100032
http://www.securityfocus.com/bid/100032
http://www.securitytracker.com/id/1039105
Common Vulnerability Exposure (CVE) ID: CVE-2017-8620
BugTraq ID: 100034
http://www.securityfocus.com/bid/100034
https://threatpost.com/windows-search-bug-worth-watching-and-squashing/127434/
http://www.securitytracker.com/id/1039091
Common Vulnerability Exposure (CVE) ID: CVE-2017-8623
BugTraq ID: 100042
http://www.securityfocus.com/bid/100042
http://www.securitytracker.com/id/1039104
Common Vulnerability Exposure (CVE) ID: CVE-2017-8624
BugTraq ID: 100061
http://www.securityfocus.com/bid/100061
http://www.securitytracker.com/id/1039106
Common Vulnerability Exposure (CVE) ID: CVE-2017-8625
BugTraq ID: 100063
http://www.securityfocus.com/bid/100063
https://oddvar.moe/2017/08/13/bypassing-device-guard-umci-using-chm-cve-2017-8625/
https://posts.specterops.io/umci-vs-internet-explorer-exploring-cve-2017-8625-3946536c6442
http://www.securitytracker.com/id/1039112
Common Vulnerability Exposure (CVE) ID: CVE-2017-8633
BugTraq ID: 100069
http://www.securityfocus.com/bid/100069
http://www.securitytracker.com/id/1039102
Common Vulnerability Exposure (CVE) ID: CVE-2017-8635
BugTraq ID: 100055
http://www.securityfocus.com/bid/100055
https://www.exploit-db.com/exploits/42471/
http://www.securitytracker.com/id/1039094
http://www.securitytracker.com/id/1039095
Common Vulnerability Exposure (CVE) ID: CVE-2017-8636
BugTraq ID: 100056
http://www.securityfocus.com/bid/100056
https://www.exploit-db.com/exploits/42466/
https://www.exploit-db.com/exploits/42467/
https://www.exploit-db.com/exploits/42468/
https://www.exploit-db.com/exploits/42478/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8639
BugTraq ID: 100050
http://www.securityfocus.com/bid/100050
Common Vulnerability Exposure (CVE) ID: CVE-2017-8640
BugTraq ID: 100051
http://www.securityfocus.com/bid/100051
https://www.exploit-db.com/exploits/42476/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8641
BugTraq ID: 100057
http://www.securityfocus.com/bid/100057
https://www.exploit-db.com/exploits/42465/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8644
BugTraq ID: 100044
http://www.securityfocus.com/bid/100044
https://www.exploit-db.com/exploits/42459/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8645
BugTraq ID: 100052
http://www.securityfocus.com/bid/100052
https://www.exploit-db.com/exploits/42469/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8646
BugTraq ID: 100053
http://www.securityfocus.com/bid/100053
https://www.exploit-db.com/exploits/42470/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8652
BugTraq ID: 100047
http://www.securityfocus.com/bid/100047
https://www.exploit-db.com/exploits/42445/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8653
BugTraq ID: 100059
http://www.securityfocus.com/bid/100059
Common Vulnerability Exposure (CVE) ID: CVE-2017-8655
BugTraq ID: 100027
http://www.securityfocus.com/bid/100027
Common Vulnerability Exposure (CVE) ID: CVE-2017-8656
BugTraq ID: 100033
http://www.securityfocus.com/bid/100033
https://www.exploit-db.com/exploits/42464/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8657
BugTraq ID: 100035
http://www.securityfocus.com/bid/100035
https://www.exploit-db.com/exploits/42481/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8661
BugTraq ID: 100037
http://www.securityfocus.com/bid/100037
Common Vulnerability Exposure (CVE) ID: CVE-2017-8664
BugTraq ID: 100085
http://www.securityfocus.com/bid/100085
http://www.securitytracker.com/id/1039093
Common Vulnerability Exposure (CVE) ID: CVE-2017-8666
BugTraq ID: 100089
http://www.securityfocus.com/bid/100089
Common Vulnerability Exposure (CVE) ID: CVE-2017-8672
BugTraq ID: 100072
http://www.securityfocus.com/bid/100072
Common Vulnerability Exposure (CVE) ID: CVE-2017-8669
BugTraq ID: 100068
http://www.securityfocus.com/bid/100068
Common Vulnerability Exposure (CVE) ID: CVE-2017-8670
BugTraq ID: 100070
http://www.securityfocus.com/bid/100070
https://www.exploit-db.com/exploits/42477/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8671
BugTraq ID: 100071
http://www.securityfocus.com/bid/100071
https://www.exploit-db.com/exploits/42475/
CopyrightCopyright (C) 2017 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.