Oval Definition:
oval:org.mitre.oval:def:12650
Revision Date
:
2012-07-30
Version
:
28
Title
:
VMBus Persistent DoS Vulnerability
Description
:
Hyper-V in Microsoft Windows Server 2008 Gold, SP2, R2, and R2 SP1 allows guest OS users to cause a denial of service (host OS infinite loop) via malformed machine instructions in a VMBus packet, aka "VMBus Persistent DoS Vulnerability."
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2011-1872
Platform(s)
:
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Product(s)
:
Definition Synopsis
Hyper-V role is enabled
AND
Affected Software
Vulnerable Microsoft Windows Server 2008 x64
Microsoft Windows Server 2008 (64-bit) is installed
AND
GDR or LDR Service branch
Vmbus.sys version is less than 6.0.6001.18643
OR
LDR
Vmbus.sys version is greater than or equal to 6.0.6001.22000
AND
Vmbus.sys version is less than 6.0.6001.22909
OR
Vulnerable Microsoft Windows Server 2008 SP2 x64
Microsoft Windows Server 2008 x64 Edition Service Pack 2 is installed
AND
GDR or LDR Service branch
Vmbus.sys version is less than 6.0.6002.18461
OR
LDR
Vmbus.sys version is greater than or equal to 6.0.6002.22000
AND
Vmbus.sys version is less than 6.0.6002.22633
OR
Vulnerable Microsoft Windows Server 2008 R2 x64
Microsoft Windows Server 2008 R2 x64 Edition is installed
AND
GDR or LDR Service branch
Vmbus.sys version is less than 6.1.7600.16816
OR
LDR
Vmbus.sys version is greater than or equal to 6.1.7600.20000
AND
Vmbus.sys version is less than 6.1.7600.20967
OR
Vulnerable Microsoft Windows Server 2008 R2 x64 SP1
Microsoft Windows Server 2008 R2 x64 Service Pack 1 is installed
AND
GDR or LDR Service branch
Vmbus.sys version is less than 6.1.7601.17617
OR
LDR
Vmbus.sys version is greater than or equal to 6.1.7601.21000
AND
Vmbus.sys version is less than 6.1.7601.21728
BACK