First published: Wed Nov 15 2017(Updated: )
Device Guard in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to make an unsigned file appear to be signed, due to a security feature bypass, aka "Device Guard Security Feature Bypass Vulnerability".
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | ||
Microsoft Windows 10 | =1511 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1703 | |
Microsoft Windows 10 | =1709 | |
Microsoft Windows Server | =1709 | |
Microsoft Windows Server 2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11830 is classified as a security feature bypass vulnerability, which may allow attackers to bypass Device Guard protections.
To fix CVE-2017-11830, users should ensure that their Windows systems are updated with the latest security patches provided by Microsoft.
CVE-2017-11830 affects various versions of Windows 10 and Windows Server 2016, specifically the 1511, 1607, 1703, and 1709 editions.
CVE-2017-11830 allows an unsigned file to be manipulated into appearing as a signed file, thus bypassing security checks.
Currently, the most effective way to mitigate the threat posed by CVE-2017-11830 is to apply the latest security updates from Microsoft.