Check: 2013-B-0129
Windows 2012 IAVM:
2013-B-0129
(in version v1 r30)
Title
Microsoft Windows Hyper-V Privilege Escalation Vulnerability (Cat II impact)
Discussion
Microsoft has released a security bulletin addressing vulnerabilities in Hyper-V host. Hyper-V provides the end user with a virtualization platform. To exploit this vulnerability, an attacker could pass a specially crafted function parameter in a hypercell from an existing running virtual machine to the hypervisor. If successfully exploited, this vulnerability would allow an attacker to execute arbitrary code and cause a denial of service condition leading to a subsequent crash of the affected system.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-42305
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |