Endpoint Vulnerability

Microsoft Exchange Denial of Service Vulnerability

Description

A denial of service vulnerability exists in Microsoft Exchange Server software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could cause a remote denial of service against a system. Exploitation of the vulnerability requires that a specially crafted email be sent to a vulnerable Exchange server. The security update addresses the vulnerability by correcting how Microsoft Exchange Server handles objects in memory.

Affected Products

Microsoft Exchange Server 2019 Cumulative Update 2,Microsoft Exchange Server 2016 Cumulative Update 13,Microsoft Exchange Server 2016 Cumulative Update 12,Microsoft Exchange Server 2019 Cumulative Update 1

References

CVE-2019-1233,