9.3

CVE-2017-11937

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Windows 7 SP1, Windows 8.1, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, 1709 and Windows Server 2016, Windows Server, version 1709, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to remote code execution. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability".
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Malware Protection Engine Version <= 1.1.14306.0
   Microsoft ≫ Exchange Server Version 2013
   Microsoft ≫ Exchange Server Version 2016
   Microsoft ≫ Forefront Endpoint Protection 2010 Version -
   Microsoft ≫ Windows Defender Version -
   Microsoft ≫ Windows 10 Version -
   Microsoft ≫ Windows 10 Version 1511
   Microsoft ≫ Windows 10 Version 1607
   Microsoft ≫ Windows 10 Version 1703
   Microsoft ≫ Windows 10 Version 1709
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1 Version -
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2016 Version -
   Microsoft ≫ Windows Server 2016 Version 1709
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 28.33% 0.979
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://www.securityfocus.com/bid/102070
Third Party Advisory
VDB Entry
http://www.securitytracker.com/id/1039972
Third Party Advisory
VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11937
Patch
Vendor Advisory