Microsoft Windows Server 2016
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*
A heap-based buffer overflow vulnerability has been identified in the Windows Message Queuing (MSMQ) service. This vulnerability allows an unauthorized attacker to execute code remotely over the network. The issue arises when the system improperly handles specially crafted requests containing maliciously formed domain names, leading to memory corruption that could be exploited for further compromise of the affected system.
Exploitation of this vulnerability could lead to remote code execution on the affected system.
Users can apply the security update KB5099535 for Windows Server 2016, KB5099539 for various Windows 10 versions, KB5101650 for Windows 11, KB5099540 for Windows Server 2022, and KB5099538 for Windows Server 2019. Instructions for downloading these security updates are available on the Microsoft Update Catalog.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.