9.3

CVE-2017-8541

The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to memory corruption. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability", a different vulnerability than CVE-2017-8538 and CVE-2017-8540.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Forefront Security Version -
   Microsoft ≫ Exchange Server Version 2013
   Microsoft ≫ Exchange Server Version 2016
   Microsoft ≫ Windows 10
   Microsoft ≫ Windows 10 Version 1511
   Microsoft ≫ Windows 10 Version 1607
   Microsoft ≫ Windows 10 Version 1703
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2008 Version - Update sp2
   Microsoft ≫ Windows Server 2008 Version r2 Update sp1
   Microsoft ≫ Windows Server 2012 Version -
   Microsoft ≫ Windows Server 2012 Version r2
   Microsoft ≫ Windows Server 2016 Version -
Microsoft ≫ Malware Protection Engine Version <= 1.1.13704.0
   Microsoft ≫ Exchange Server Version 2013
   Microsoft ≫ Exchange Server Version 2016
   Microsoft ≫ Windows 10
   Microsoft ≫ Windows 10 Version 1511
   Microsoft ≫ Windows 10 Version 1607
   Microsoft ≫ Windows 10 Version 1703
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2008 Version - Update sp2
   Microsoft ≫ Windows Server 2008 Version r2 Update sp1
   Microsoft ≫ Windows Server 2012 Version -
   Microsoft ≫ Windows Server 2012 Version r2
   Microsoft ≫ Windows Server 2016 Version -
Microsoft ≫ Windows Defender Version -
   Microsoft ≫ Exchange Server Version 2013
   Microsoft ≫ Exchange Server Version 2016
   Microsoft ≫ Windows 10
   Microsoft ≫ Windows 10 Version 1511
   Microsoft ≫ Windows 10 Version 1607
   Microsoft ≫ Windows 10 Version 1703
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2008 Version - Update sp2
   Microsoft ≫ Windows Server 2008 Version r2 Update sp1
   Microsoft ≫ Windows Server 2012 Version -
   Microsoft ≫ Windows Server 2012 Version r2
   Microsoft ≫ Windows Server 2016 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 48.4% 0.988
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://www.securitytracker.com/id/1038571
http://www.securityfocus.com/bid/98710
Third Party Advisory
VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8541
Vendor Advisory
https://www.exploit-db.com/exploits/42092/