CVE-2019-0736: Windows DHCP Client Remote Code Execution Vulnerability
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka 'Windows DHCP Client Remote Code Execution Vulnerability'.
Other sources
A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client. An attacker who successfully exploited the vulnerability could run arbitrary code on the client machine. To exploit the vulnerability, an attacker could send specially crafted DHCP responses to a client. The security update addresses the vulnerability by correcting how Windows DHCP clients handle certain DHCP responses.
— NVD
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-0736?
CVE-2019-0736 has been rated as critical due to its potential for remote code execution.
How do I fix CVE-2019-0736?
To fix CVE-2019-0736, apply the relevant security updates provided by Microsoft for affected Windows versions.
Which versions of Windows are affected by CVE-2019-0736?
CVE-2019-0736 affects multiple versions of Windows, including Windows 7, 8.1, 10, and several Windows Server editions.
What type of vulnerability is CVE-2019-0736?
CVE-2019-0736 is a memory corruption vulnerability related to the DHCP client.
Can CVE-2019-0736 be exploited remotely?
Yes, CVE-2019-0736 can be exploited remotely if an attacker sends specially crafted DHCP responses to a vulnerable client.