Rapid7 Vulnerability & Exploit Database

Microsoft CVE-2017-11788: Windows Search Denial of Service Vulnerability

Free InsightVM Trial No Credit Card Necessary
Watch Demo See how it all works
Back to Search

Microsoft CVE-2017-11788: Windows Search Denial of Service Vulnerability

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
11/14/2017
Created
07/25/2018
Added
11/14/2017
Modified
11/18/2021

Description

A denial of service vulnerability exists when Windows Search improperly handles objects in memory. An attacker who successfully exploited the vulnerability could cause a remote denial of service against a system. To exploit the vulnerability, the attacker could send specially crafted messages to the Windows Search service. Additionally, in an enterprise scenario, a remote unauthenticated attacker could remotely trigger the vulnerability through a Server Message Block (SMB) connection. The security update addresses the vulnerability by correcting how Windows Search handles objects in memory.

Solution(s)

  • msft-kb4047211-06cbd44e-1dea-49c2-9239-8d5b3a667317
  • msft-kb4047211-8a6f5b8b-608d-4023-9a8c-7a23786f8b51
  • msft-kb4047211-9253023c-05bc-4e06-92f6-0e37793f8cdd
  • msft-kb4048952-ccd03355-a6c1-4c5b-83f8-da08975d8458
  • msft-kb4048952-ce3eeb9e-e67d-4bb2-a058-0e7c484cba2e
  • msft-kb4048953-0a541419-914d-4e57-93fb-5d51a0049ec7
  • msft-kb4048953-1933cbd9-b546-44fc-893b-084feb74f6c8
  • msft-kb4048953-89d86dfa-3564-4703-b0be-b612b443a8d6
  • msft-kb4048954-e0f1eb96-4d0b-45f4-8933-8629f2b17981
  • msft-kb4048954-f6a13291-8ce3-4cae-be10-0faeaa15dae1
  • msft-kb4048955-2b1ad711-0a3a-4c1a-8e3a-89742d8980ff
  • msft-kb4048955-8fa5ae59-508a-4712-aea6-9a16f11b7924
  • msft-kb4048955-a10703e6-85b8-4431-84e4-1c9d1a700f42
  • msft-kb4048956-42d9cad4-7702-4071-b60c-531a1d0336e8
  • msft-kb4048956-8cedad72-f5ff-4761-90e4-a5f5a5d842a2
  • msft-kb4048960-0e39ae66-e833-4115-84bb-3e1abfdbdaa0
  • msft-kb4048960-0f7eb0d4-8433-4d8c-844c-cbcd76ccab73
  • msft-kb4048960-5940a0cf-4224-4585-8b88-6d92d8bb22ff
  • msft-kb4048960-a29935ba-b02b-4fdd-8e82-351b8da320a2
  • msft-kb4048960-c3c3069e-04a3-4ea3-acd5-270c4d57f1b1
  • msft-kb4048960-ed668542-7b31-4088-84ae-13a65e210771
  • msft-kb4048961-385862b6-9fab-4263-bd3c-ec04702df06d
  • msft-kb4048961-4acd2a3c-081a-4e7b-ba98-8dc3abb2ff6f
  • msft-kb4048961-896142dc-9329-403d-98e0-229567e995d9
  • msft-kb4048962-3d6d8f7f-b82b-46d1-b2e5-af447c8abe31
  • msft-kb4048962-7c18e258-f9d5-4cbe-bea3-432e81c05244
  • msft-kb4048962-ecdbbdb4-fb11-4379-8e5c-029ec80149cc

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;