CVE-2017-0004Improper Input Validation in Microsoft Windows Server 2008

Severity
7.5HIGHNVD
EPSS
53.5%
top 2.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 10
Latest updateMay 14

Description

The Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows remote attackers to cause a denial of service (reboot) via a crafted authentication request, aka "Local Security Authority Subsystem Service Denial of Service Vulnerability."

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

🔴Vulnerability Details

1
GHSA
GHSA-vh77-9c84-463g: The Local Security Authority Subsystem Service (LSASS) in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows re2022-05-14

🔍Detection Rules

1
Suricata
ET DOS Microsoft Windows LSASS Remote Memory Corruption (CVE-2017-0004)2016-11-11

📋Vendor Advisories

2
Red Hat
ntp: Potential Overflows in ctl_put() functions2017-03-21
Microsoft
Local Security Authority Subsystem Service Denial of Service Vulnerability2017-01-10

🕵️Threat Intelligence

2
Qualys
Microsoft Starts 2017 with Record Low Security Updates | Qualys2017-01-10
Qualys
Microsoft Starts 2017 with Record Low Security Updates2017-01-10

💬Community

2
Bugzilla
CVE-2017-12189 jboss: unsafe chown of server.log in jboss init script allows privilege escalation (Incomplete fix for CVE-2016-8656)2017-10-09
Bugzilla
CVE-2017-2576 CVE-2017-2578 moodle: Multiple security issues2017-01-20