Executive brief
A remote code execution vulnerability, known as BlueKeep, exists in Microsoft Remote Desktop Services (formerly Terminal Services) due to a use-after-free error. An unauthenticated attacker can exploit this by sending specially crafted requests over RDP to the target system, potentially allowing for full system takeover.
Affected products
- Microsoft Remote Desktop Services (Terminal Services)
Timeline
- 2019-05-14: advisory: Initial Microsoft security advisory published
- 2021-11-03: kev added: Added to CISA Known Exploited Vulnerabilities Catalog
- 2021-11-03: disclosed: Publication date listed in advisory