Description
DNS client in Microsoft Windows 8.1; Windows Server 2012 R2, Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 fails to properly process DNS queries, which allows remote attackers to obtain sensitive information via (1) convincing a workstation user to visit an untrusted webpage or (2) tricking a server into sending a DNS query to a malicious DNS server, aka "Windows DNS Query Information Disclosure Vulnerability."
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-08-05T12:55:17.599Z
Reserved: 2016-09-09T00:00:00.000Z
Link: CVE-2017-0057
No data.
Status : Modified
Published: 2017-03-17T00:59:01.493
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-0057
No data.
OpenCVE Enrichment
No data.
Weaknesses