Microsoft Windows DNS Remote Code Execution Vulnerability
Last Update Date:
9 Dec 2015 13:54
Release Date:
9 Dec 2015
3761
Views
RISK: High Risk
TYPE: Operating Systems - Windows OS
A remote code execution vulnerability exists in Windows Domain Name System (DNS) servers when they fail to properly parse requests. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the Local System Account. Windows servers that are configured as DNS servers are at risk from this vulnerability.
Impact
- Remote Code Execution
System / Technologies affected
- Microsoft Windows Server 2008
- Microsoft Windows Server 2008 R2
- Microsoft Windows Server 2012 and Windows Server 2012 R2
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/en-us/library/security/MS15-127
Vulnerability Identifier
Source
Related Link
Share with