CVE-2023-36395: Windows Deployment Services Denial of Service Vulnerability
Published Nov 14, 2023
·Updated
Windows Deployment Services Denial of Service Vulnerability
Affected Software
24 affected componentsFixes available
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2012 R2
Microsoft Windows Server 2022, 23H2 Edition
Microsoft Windows Server 2012
Microsoft Windows Server 2012
Microsoft Windows Server 2008=r2
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2008
Microsoft Windows Server 2016
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows Server 2019
Microsoft Windows Server 2022
Microsoft Windows Server 2022
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2008 R2
Remediation
Event History
Nov 14, 2023
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
CVE Published
via MITRE·05:57 PM
Data Sourced
via MITRE·05:57 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2023-36395?
CVE-2023-36395 refers to the Windows Deployment Services Denial of Service Vulnerability.
2
How severe is CVE-2023-36395?
CVE-2023-36395 has a severity rating of 7.5 (High).
3
Which software is affected by CVE-2023-36395?
Windows Server 2012 R2, Windows Server 2022, Windows Server 2008, Windows Server 2012, Windows Server 2008 R2, Windows Server 2019, Windows Server 2016 are affected by CVE-2023-36395.
4
How can I fix CVE-2023-36395?
To fix CVE-2023-36395, apply the appropriate security patch provided by Microsoft for your respective Windows Server version. The patch links can be found in the Microsoft Support articles provided in the affected software section.
5
Where can I find more information about CVE-2023-36395?
You can find more information about CVE-2023-36395 on the Microsoft Security Response Center website.