VYPR
Medium severity6.8NVD Advisory· Published Sep 13, 2018· Updated Jun 17, 2026

CVE-2018-8438

CVE-2018-8438

Description

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch on a host server fails to properly validate input from a privileged user on a guest operating system, aka "Windows Hyper-V Denial of Service Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8436, CVE-2018-8437.

Affected products

17
  • Microsoft/Windows Server 2003cpe-rescue2 versions
    version 1709 (Server Core Installation)+ 1 more
    • (no CPE)range: version 1709 (Server Core Installation)
    • cpe:2.3:o:microsoft:windows_server:2012:r2:*:*:*:*:*:*
  • Range: (Server Core installation)
  • Range: Windows RT 8.1
  • Microsoft/Windows Server 2016cpe-rescue4 versions
    (Server Core installation)+ 3 more
    • (no CPE)range: (Server Core installation)
    • cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:1709:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:*
  • Microsoft/Windows 8.1cpe-rescue3 versions
    32-bit systems+ 2 more
    • (no CPE)range: 32-bit systems
    • cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:rt:*:*:*
  • Microsoft/Windows 10 1909cpe-rescue5 versions
    32-bit Systems+ 4 more
    • (no CPE)range: 32-bit Systems
    • cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.