CVE-2018-0833

Description

The Microsoft Server Message Block 2.0 and 3.0 (SMBv2/SMBv3) client in Windows 8.1 and RT 8.1 and Windows Server 2012 R2 allows a denial of service vulnerability due to how specially crafted requests are handled, aka SMBv2/SMBv3 Null Dereference Denial of Service Vulnerability.

Risk Information

Base Score
4.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
74.526

Associated Vulnerability

VulnerabilityOS Platform
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x64-based Systems - Meltdown and Spectre(KB4074594)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 R2 for x64-based Systems - Meltdown and Spectre (KB4074594)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x86-based Systems - Meltdown and Spectre(KB4074594)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x64-based Systems - Meltdown and SpectreKB4074597)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows Server 2012 R2 for x64-based Systems - Meltdown and Spectre(KB4074597)Windows
Windows Scripting Engine Memory Corruption Vulnerability for Windows 8.1 for x86-based Systems - Meltdown and Spectre (KB4074597)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-238392018-02 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems - Meltdown and Spectre(KB4074594)
PATCH-238402018-02 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems - Meltdown and Spectre (KB4074594)
PATCH-238382018-02 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems - Meltdown and Spectre(KB4074594)
PATCH-238322018-02 Security Only Quality Update for Windows 8.1 for x64-based Systems - Meltdown and SpectreKB4074597)
PATCH-238332018-02 Security Only Quality Update for Windows Server 2012 R2 for x64-based Systems - Meltdown and Spectre(KB4074597)
PATCH-238312018-02 Security Only Quality Update for Windows 8.1 for x86-based Systems - Meltdown and Spectre (KB4074597)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234