CVE-2015-1647: Input Validation
Published Apr 14, 2015
·Updated
Virtual Machine Manager (VMM) in Hyper-V in Microsoft Windows 8.1 and Windows Server 2012 R2 allows guest OS users to cause a denial of service (VMM functionality loss) via a crafted application, aka "Windows Hyper-V DoS Vulnerability."
Affected Software
2 affected components
Microsoft Windows 8.1
Microsoft Windows Server 2012=r2
Remediation
Event History
Apr 14, 2015
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1647?
CVE-2015-1647 has a high severity rating, as it allows for potential denial of service against the VMM functionality.
2
How do I fix CVE-2015-1647?
To fix CVE-2015-1647, apply the security updates provided by Microsoft as detailed in the MS15-042 security bulletin.
3
What systems are affected by CVE-2015-1647?
CVE-2015-1647 affects Microsoft Windows 8.1 and Windows Server 2012 R2.
4
What type of attack does CVE-2015-1647 enable?
CVE-2015-1647 enables a denial of service attack against the Virtual Machine Manager in Hyper-V.
5
Who can exploit CVE-2015-1647?
Guest OS users can exploit CVE-2015-1647 by running a crafted application designed to disrupt VMM functionality.