Trend Micro Security

MS10-102:Hyper-V の脆弱性により、サービス拒否が起こる (2345316)

  危険度: :
  CVE識別番号: CVE-2010-3960

  概要

This update resolves a vulnerability in Windows Server 2008 Hyper-V and Windows Server 2008 R2 Hyper-V. An attacker with valid logon credentials could exploit the vulnerability and allow denial of service. The exploit occurs when an attacker sends a specially crafted packet to the VMBus in one of the guest virtual machines hosted by the Hyper-V server. More specifically, the security update addresses the vulnerability by correcting the way by which the Hyper-V server validates malformed packets sent to the VMBus inside its guest virtual machines.

  トレンドマイクロの対策

詳しい情報については以下のサイトをご参照ください。

  対応方法

  影響を受けるソフトウェア

  • Windows Server 2008 for x64-based Systems and Windows Server 2008 for x64-based Systems Service Pack 2*
  • Windows Server 2008 R2 for x64-based Systems*