Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.811280
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Windows Multiple Vulnerabilities (KB4034681)
Zusammenfassung:This host is missing a critical security; update according to Microsoft KB4034681
Beschreibung:Summary:
This host is missing a critical security
update according to Microsoft KB4034681

Vulnerability Insight:
Multiple flaws exist due to:

- An error in Windows when the Win32k component fails to properly handle
objects in memory.

- An error in Windows Input Method Editor (IME) when IME improperly handles
parameters in a method of a DCOM class.

- An error when Microsoft browsers improperly access objects in memory.

- An error in Windows Error Reporting (WER).

- An error in the way JavaScript engines render when handling objects in
memory in Microsoft browsers.

- An error when Windows Hyper-V on a host server fails to properly validate
input from an authenticated user on a guest operating system.

- An error in the Microsoft JET Database Engine that could allow remote code
execution on an affected system.

- An error when Windows Search handles objects in memory.

- An error in the way that Microsoft browser JavaScript engines render content
when handling objects in memory.

- An error when Microsoft Windows PDF Library improperly handles objects in
memory.

- An error when Microsoft Windows improperly handles NetBIOS packets.

- An error when the win32k component improperly provides kernel information.

- An error when the Volume Manager Extension Driver component improperly provides
kernel information.

Vulnerability Impact:
Successful exploitation will allow remote
attacker to run arbitrary code in kernel mode, gain the same user rights as
the current user, access to sensitive information and system functionality
and conduct a denial-of-service condition.

Affected Software/OS:
- Microsoft Windows Server 2012 R2

- Microsoft Windows 8.1 for 32-bit/x64

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-0174
BugTraq ID: 100038
http://www.securityfocus.com/bid/100038
http://www.securitytracker.com/id/1039109
Common Vulnerability Exposure (CVE) ID: CVE-2017-0250
BugTraq ID: 98100
http://www.securityfocus.com/bid/98100
http://www.securitytracker.com/id/1039090
Common Vulnerability Exposure (CVE) ID: CVE-2017-0293
BugTraq ID: 100039
http://www.securityfocus.com/bid/100039
http://www.securitytracker.com/id/1039092
Common Vulnerability Exposure (CVE) ID: CVE-2017-8591
BugTraq ID: 99430
http://www.securityfocus.com/bid/99430
http://www.securitytracker.com/id/1039097
Common Vulnerability Exposure (CVE) ID: CVE-2017-8593
BugTraq ID: 100032
http://www.securityfocus.com/bid/100032
http://www.securitytracker.com/id/1039105
Common Vulnerability Exposure (CVE) ID: CVE-2017-8620
BugTraq ID: 100034
http://www.securityfocus.com/bid/100034
https://threatpost.com/windows-search-bug-worth-watching-and-squashing/127434/
http://www.securitytracker.com/id/1039091
Common Vulnerability Exposure (CVE) ID: CVE-2017-8624
BugTraq ID: 100061
http://www.securityfocus.com/bid/100061
http://www.securitytracker.com/id/1039106
Common Vulnerability Exposure (CVE) ID: CVE-2017-8633
BugTraq ID: 100069
http://www.securityfocus.com/bid/100069
http://www.securitytracker.com/id/1039102
Common Vulnerability Exposure (CVE) ID: CVE-2017-8635
BugTraq ID: 100055
http://www.securityfocus.com/bid/100055
https://www.exploit-db.com/exploits/42471/
http://www.securitytracker.com/id/1039094
http://www.securitytracker.com/id/1039095
Common Vulnerability Exposure (CVE) ID: CVE-2017-8636
BugTraq ID: 100056
http://www.securityfocus.com/bid/100056
https://www.exploit-db.com/exploits/42466/
https://www.exploit-db.com/exploits/42467/
https://www.exploit-db.com/exploits/42468/
https://www.exploit-db.com/exploits/42478/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8641
BugTraq ID: 100057
http://www.securityfocus.com/bid/100057
https://www.exploit-db.com/exploits/42465/
Common Vulnerability Exposure (CVE) ID: CVE-2017-8653
BugTraq ID: 100059
http://www.securityfocus.com/bid/100059
Common Vulnerability Exposure (CVE) ID: CVE-2017-8664
BugTraq ID: 100085
http://www.securityfocus.com/bid/100085
http://www.securitytracker.com/id/1039093
Common Vulnerability Exposure (CVE) ID: CVE-2017-8666
BugTraq ID: 100089
http://www.securityfocus.com/bid/100089
Common Vulnerability Exposure (CVE) ID: CVE-2017-8668
BugTraq ID: 100092
http://www.securityfocus.com/bid/100092
http://www.securitytracker.com/id/1039108
Common Vulnerability Exposure (CVE) ID: CVE-2017-8669
BugTraq ID: 100068
http://www.securityfocus.com/bid/100068
CopyrightCopyright (C) 2017 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.