CVE-2024-43521

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Oct 8, 2024
Updated: Oct 17, 2024
CWE ID 253

Summary

CVE-2024-43521 is a newly disclosed denial-of-service (DoS) vulnerability affecting Microsoft's Hyper-V hypervisor in Windows. This issue can be exploited by sending specially crafted packets to the Hyper-V Virtual Switch, causing it to become unresponsive and rendering the virtual machines inaccessible. The vulnerability may necessitate a reboot of the affected system to restore functionality, potentially leading to significant downtime for organizations relying on Hyper-V for virtualization. Microsoft is working on a patch to address this issue, and users are advised to apply it as soon as it becomes available to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows Server 2022
  • Microsoft Windows Server 2012
  • Microsoft Windows Server 2016
  • Microsoft Windows Server 2019
  • Microsoft Windows Server 2012 R2

Affected Vendors

  • Microsoft