CVE-2023-38254: Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
Other sources
Microsoft Message Queuing Denial of Service Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.1.7601.26664Patch KB5029307 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.2.9200.24414Patch KB5029308 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.3.9600.21503Patch KB5029304 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.0.6003.22216Patch KB5029301 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.14393.6167Patch KB5029242 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19045.3324Patch KB5029244 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.10240.20107Patch KB5029259 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.20348.1906Fixed in 10.0.20348.1903Patch KB5029367 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.17763.4737Patch KB5029247 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22000.2295Patch KB5029253 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.22621.2134Patch KB5029263 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 10.0.19044.3324Patch KB5029244
Event History
Frequently Asked Questions
What is the severity of CVE-2023-38254?
CVE-2023-38254 has been classified as a Denial of Service vulnerability which can disrupt Microsoft Message Queuing services.
How do I fix CVE-2023-38254?
To fix CVE-2023-38254, ensure your affected Microsoft products are updated with the latest security patches as recommended by Microsoft.
What systems are affected by CVE-2023-38254?
CVE-2023-38254 affects multiple versions of Microsoft Windows including Windows Server 2022, Windows 10, Windows 11, and Windows Server 2019.
Is there a workaround for CVE-2023-38254?
Currently, Microsoft recommends applying the security updates as the best approach to mitigate CVE-2023-38254, with no specific workarounds mentioned.
Has CVE-2023-38254 been exploited in the wild?
As of the latest information, there have been no confirmed reports of CVE-2023-38254 being actively exploited in the wild.