CVE-2017-0147: Microsoft Windows SMBv1 Information Disclosure Vulnerability
The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to obtain sensitive information from process memory via a crafted packets, aka "Windows SMB Information Disclosure Vulnerability."
Other sources
The SMBv1 server in Microsoft Windows allows remote attackers to obtain sensitive information from process memory via a crafted packet.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0147?
CVE-2017-0147 has a severity rating of critical due to its potential for remote code execution.
How do I fix CVE-2017-0147?
To fix CVE-2017-0147, apply the latest security patches provided by Microsoft for affected Windows versions.
Which versions of Windows are affected by CVE-2017-0147?
CVE-2017-0147 affects various Windows versions including Windows 7 SP1, Windows 8.1, and server versions up to Windows Server 2016.
What type of attack is associated with CVE-2017-0147?
CVE-2017-0147 allows attackers to execute arbitrary code on vulnerable systems via crafted SMB requests.
Is there a workaround for CVE-2017-0147 if patches cannot be applied immediately?
Disabling SMBv1 on affected systems can serve as a temporary workaround for CVE-2017-0147.