CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
CVE-2020-17095 | Hyper-V Remote Code Execution Vulnerability | Windows 10 | Critical | 11-12-2020 |
Technical Information
Brief overview of the risk:
A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input on a guest operating system.To exploit this vulnerability, an attacker could run a specially crafted application on a Hyper-V guest that could cause the Hyper-V host operating system to execute arbitrary code when it fails to properly validate vSMB packet data.
Further information on this vulnerability is available at : CVE-2020-17095
Affected Software
Windows 10 Version 20H2 for x64-based SystemsWindows Server version 20H2 (Server Core Installation)
Windows 10 Version 1803 for x64-based Systems
Windows 10 Version 1809 for x64-based Systems
Windows Server 2019
Windows Server 2019 (Server Core installation)
Windows 10 Version 1909 for x64-based Systems
Windows Server version 1909 (Server Core installation)
Windows 10 Version 1903 for x64-based Systems
Windows Server version 1903 (Server Core installation)
Windows 10 Version 2004 for x64-based Systems
Windows Server version 2004 (Server Core installation)
Windows 10 Version 1607 for x64-based Systems
Windows Server 2016
Windows Server 2016 (Server Core installation)