Impact
The vulnerability is a race condition in the Windows DNS Server, where concurrent operations on a shared resource lack proper synchronization. An unauthenticated network attacker can exploit this flaw by sending specially crafted DNS queries that trigger the race condition, leading to arbitrary code execution on the DNS Server host. The primary impact is Remote Code Execution, which could allow the attacker to gain full control of the affected system, compromise network infrastructure, and pivot to other services.
Affected Systems
Affects Microsoft Windows 10 versions 1607 and 1809, as well as Windows Server 2012, 2012 R2, 2016, 2019, 2022, and 2025, including both standard and Server Core installations.
Risk and Exploitability
A CVSS score of 8.1 indicates high severity. The EPSS score is less than 1%, implying a very low but nonzero likelihood of exploitation, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is over the network, with an attacker crafting DNS queries to trigger the race condition.
OpenCVE Enrichment