CVE-2021-26896Microsoft Windows Server 2008 R2 Service Pack 1 vulnerability

9 documents7 sources
Severity
7.5HIGHNVD
EPSS
20.4%
top 4.45%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 11
Latest updateMay 24

Description

Windows DNS Server Denial of Service Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages9 packages

CVEListV5microsoft/windows_server_2008_service_pack_26.0.0publication
CVEListV5microsoft/windows_server_2008_r2_service_pack_16.1.0publication+1
CVEListV5microsoft/windows_server_20126.2.0publication
CVEListV5microsoft/windows_server_201610.0.0publication
CVEListV5microsoft/windows_server_201910.0.0publication

Patches

🔴Vulnerability Details

3
GHSA
GHSA-fg89-fq65-83p5: Windows DNS Server Denial of Service Vulnerability This CVE ID is unique from CVE-2021-270632022-05-24
GHSA
GHSA-wvrr-f44c-x28v: Windows DNS Server Denial of Service Vulnerability This CVE ID is unique from CVE-2021-268962022-05-24
CVEList
Windows DNS Server Denial of Service Vulnerability2021-03-11

📋Vendor Advisories

1
Microsoft
Windows DNS Server Denial of Service Vulnerability2021-03-09

🕵️Threat Intelligence

4
Trendmicro
March Patch Tuesday: Fixes for Exchange Server, IE2021-03-10
Tenable
Microsoft’s March 2021 Patch Tuesday Addresses 82 CVEs (CVE-2021-26411)2021-03-09
Talos
Microsoft Patch Tuesday for March 2021 — Snort rules and prominent vulnerabilities2021-03-09
Talos
Microsoft Patch Tuesday for March 2021 — Snort rules and prominent vulnerabilities2021-03-09
CVE-2021-26896 — Microsoft vulnerability | cvebase