Home

Description

Layer 2 Tunneling Protocol Remote Code Execution Vulnerability

PUBLISHED Reserved 2023-08-31 | Published 2023-10-10 | Updated 2025-04-14 | Assigner microsoft




HIGH: 8.1CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Problem types

CWE-416: Use After Free

Product status

10.0.17763.0 (custom) before 10.0.17763.4974
affected

10.0.0 (custom) before 10.0.17763.4974
affected

10.0.17763.0 (custom) before 10.0.17763.4974
affected

10.0.17763.0 (custom) before 10.0.17763.4974
affected

10.0.20348.0 (custom) before 10.0.20348.2031
affected

10.0.0 (custom) before 10.0.22000.2538
affected

10.0.19043.0 (custom) before 10.0.19041.3570
affected

10.0.22621.0 (custom) before 10.0.22621.2428
affected

10.0.19045.0 (custom) before 10.0.19045.3570
affected

10.0.10240.0 (custom) before 10.0.10240.20232
affected

10.0.14393.0 (custom) before 10.0.14393.6351
affected

10.0.14393.0 (custom) before 10.0.14393.6351
affected

10.0.14393.0 (custom) before 10.0.14393.6351
affected

6.0.6003.0 (custom) before 6.0.6003.22317
affected

6.0.6003.0 (custom) before 6.0.6003.22317
affected

6.0.6003.0 (custom) before 6.0.6003.22317
affected

6.1.7601.0 (custom) before 6.1.7601.26769
affected

6.1.7601.0 (custom) before 6.1.7601.26769
affected

6.2.9200.0 (custom) before 6.2.9200.24523
affected

6.2.9200.0 (custom) before 6.2.9200.24523
affected

6.3.9600.0 (custom) before 6.3.9600.21620
affected

6.3.9600.0 (custom) before 6.3.9600.21620
affected

References

msrc.microsoft.com/update-guide/vulnerability/CVE-2023-41771 (Layer 2 Tunneling Protocol Remote Code Execution Vulnerability) vendor-advisory

cve.org (CVE-2023-41771)

nvd.nist.gov (CVE-2023-41771)

Download JSON