6.5
CVSSv3

CVE-2020-0890

Published: 11/09/2020 Updated: 31/12/2023
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.5 | Impact Score: 4 | Exploitability Score: 2
VMScore: 437
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

<p>A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate specific malicious data from a user on a guest operating system.</p> <p>To exploit the vulnerability, an attacker who already has a privileged account on a guest operating system, running as a virtual machine, could run a specially crafted application.</p> <p>The security update addresses the vulnerability by resolving the conditions where Hyper-V would fail to handle these requests.</p>

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 10 1803

microsoft windows server 2019 -

microsoft windows 10 1809

microsoft windows server 2016 1903

microsoft windows 10 1903

microsoft windows server 2016 1909

microsoft windows 10 1909

microsoft windows 10 2004

microsoft windows server 2016 2004

Github Repositories

CVE-2020-0890 | Windows Hyper-V Denial of Service Vulnerability proof-of-concept code

gerhart01 CVE-2020-0890 | Windows Hyper-V Denial of Service Vulnerability proof-of-concept code

Hyper-V related resources

Hyper-V stuff This repository contains some of the Hyper-V related work I did in the past GHHv6_ch25 My code from the "Inside Hyper-V" of the Gray Hat Hacking book (6th edition) Original repository: githubcom/GrayHatHacking/GHHv6git Includes a framework that can be used to perform hypervisor research/fuzzing and hyper-v specific code (hypercalls, MSRs, V