Junglewise Threat Intelligence

CVE-2017-0147: Microsoft Windows SMBv1 Information Disclosure Vulnerability

CVE-2017-0147 · Severity: critical · CVSS 7.5 · Exploited in the wild · Published 2022-05-24

Technologies: Microsoft Windows 10, Microsoft Windows Server 2008, Microsoft Windows Vista, Microsoft Windows 8.1, Microsoft Windows Rt 8.1, Microsoft Windows Server 2012, Microsoft Windows Server 2016, Microsoft Windows 7. Vendors: Microsoft.

Executive brief

The SMBv1 server in multiple versions of Microsoft Windows allows remote attackers to obtain sensitive information from process memory via crafted packets. This information disclosure vulnerability is part of the set of flaws addressed in the MS17-010 security update.

Affected products

  • Microsoft Windows Vista SP2
  • Microsoft Windows Server 2008 SP2, R2 SP1
  • Microsoft Windows 7 SP1
  • Microsoft Windows 8.1 Gold
  • Microsoft Windows Server 2012 Gold, R2
  • Microsoft Windows RT 8.1 Gold
  • Microsoft Windows 10 Gold, 1511, 1607
  • Microsoft Windows Server 2016 Gold

Timeline

  • 2017-03-14: patched: Microsoft released security updates (MS17-010) to address this vulnerability.
  • 2022-05-24: kev added: Added to CISA's Known Exploited Vulnerabilities Catalog.
  • 2022-05-24: disclosed

Related threats