CVE-2014-4068: Microsoft Lync Server

Medium severity, CVSS 5.0. EPSS: 19.7% chance of exploitation in the next 30 days.

The Response Group Service in Microsoft Lync Server 2010 and 2013 and the Core Components in Lync Server 2013 do not properly handle exceptions, which allows remote attackers to cause a denial of service (daemon hang) via a crafted call, aka "Lync Denial of Service Vulnerability."

Affected products

  • Microsoft Lync Server: version 2010 only; version 2013 only

Published 2014-09-10. Last modified 2026-06-17.