CVE-2020-0904: Windows Hyper-V Denial of Service Vulnerability
<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p> <p>To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application.</p> <p>The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests.</p>
Other sources
A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application.The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests., aka 'Windows Hyper-V Denial of Service Vulnerability'. This CVE ID is unique from CVE-2020-0890.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-0904?
CVE-2020-0904 is rated as critical due to its potential to allow denial of service attacks.
How do I fix CVE-2020-0904?
To remediate CVE-2020-0904, ensure that your Microsoft Hyper-V environment is updated with the latest security patches from Microsoft.
What software is affected by CVE-2020-0904?
CVE-2020-0904 affects various versions of Microsoft Windows 10 and Windows Server 2016 and 2019.
Who can exploit CVE-2020-0904?
An attacker with a privileged account on a guest operating system can exploit CVE-2020-0904.
What type of attack is associated with CVE-2020-0904?
CVE-2020-0904 is associated with a denial of service vulnerability.