CVE-2018-8311: Input Validation
Published Jul 11, 2018
·Updated
A remote code execution vulnerability exists when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted content, aka "Remote Code Execution Vulnerability in Skype For Business and Lync." This affects Skype, Microsoft Lync.
Affected Software
2 affected components
Microsoft Lync=sp1
Microsoft Skype for Business
Event History
Jul 11, 2018
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
via NVD·12:29 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2018-8311?
CVE-2018-8311 is a remote code execution vulnerability in Skype for Business and Microsoft Lync.
2
How does CVE-2018-8311 occur?
CVE-2018-8311 occurs when Skype for Business and Microsoft Lync clients fail to properly sanitize specially crafted content.
3
What is the severity level of CVE-2018-8311?
The severity level of CVE-2018-8311 is high (8.8).
4
Which software is affected by CVE-2018-8311?
Skype for Business and Microsoft Lync are affected by CVE-2018-8311.
5
How can I fix CVE-2018-8311?
To fix CVE-2018-8311, it is recommended to apply the necessary security updates provided by Microsoft.