Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2019-1347Microsoft Windows vulnerability

10 documents5 sources
Severity
6.5MEDIUMNVD
EPSS
27.0%
top 3.62%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedOct 10
Latest updateMay 24

Description

A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'. This CVE ID is unique from CVE-2019-1343, CVE-2019-1346.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages21 packages

CVEListV5microsoft/windows18 versions+17
NVDmicrosoft/windowsr2, 1803, 1903+2

Patches

🔴Vulnerability Details

3
GHSA
GHSA-mg6w-cj2x-52x8: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'2022-05-24
GHSA
GHSA-c9jj-7jgm-qvp7: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'2022-05-24
GHSA
GHSA-j5gc-2q3p-gfx8: A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Service Vulnerability'2022-05-24

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows Kernel - Out-of-Bounds Read in nt!MiRelocateImage While Parsing Malformed PE File2019-10-10

📋Vendor Advisories

1
Microsoft
Windows Denial of Service Vulnerability2019-10-08

🕵️Threat Intelligence

2
Talos
Microsoft Patch Tuesday — Oct. 2019: Vulnerability disclosures and Snort coverage2019-10-08
Talos
Microsoft Patch Tuesday — Oct. 2019: Vulnerability disclosures and Snort coverage2019-10-08
CVE-2019-1347 — Microsoft Windows vulnerability | cvebase