CVE-2016-0150: Microsoft Windows 10

High severity, CVSS 7.5. EPSS: 28.6% chance of exploitation in the next 30 days.

HTTP.sys in Microsoft Windows 10 Gold and 1511 allows remote attackers to cause a denial of service (system hang) via crafted HTTP 2.0 requests, aka "HTTP.sys Denial of Service Vulnerability."

Affected products

  • Microsoft Windows 10: affected versions not specified; version 1511 only

Published 2016-04-12. Last modified 2026-06-17.