CVE-2015-0079

Microsoft Windows 7, 8, 8.1, Server 2012 - Denial of Service via RDP Session Memory Leak

Title source: llm
STIX 2.1

Description

The Remote Desktop Protocol (RDP) implementation in Microsoft Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote attackers to cause a denial of service (memory consumption and RDP outage) by establishing many RDP sessions that do not properly free allocated memory, aka "Remote Desktop Protocol (RDP) Denial of Service Vulnerability."

References (2)

Core 2
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-030
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1031892

Scores

EPSS 0.1616
EPSS Percentile 96.6%

Details

CWE
CWE-399
Status published
Products (5)
microsoft/windows_7
microsoft/windows_8
microsoft/windows_8.1
microsoft/windows_server_2012
microsoft/windows_server_2012 r2
Published Mar 11, 2015
Tracked Since Feb 18, 2026