Description
DNS client in Microsoft Windows 8.1; Windows Server 2012 R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 fails to properly process DNS queries, which allows remote attackers to obtain sensitive information via (1) convincing a workstation user to visit an untrusted webpage or (2) tricking a server into sending a DNS query to a malicious DNS server, aka "Windows DNS Query Information Disclosure Vulnerability."
Published: 2017-03-17
Score: 4.3 Medium
EPSS: 31.1% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Microsoft Windows 10 Windows 8.1 Windows Rt 8.1 Windows Server 2012 Windows Server 2016
cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2024-08-05T12:55:17.599Z

Reserved: 2016-09-09T00:00:00.000Z

Link: CVE-2017-0057

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-03-17T00:59:01.493

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-0057

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses