CVE-2017-0168: Microsoft Windows 8.1

Medium severity, CVSS 5.8. EPSS: 5.6% chance of exploitation in the next 30 days.

An information disclosure vulnerability exists when the Windows Hyper-V Network Switch running on a Windows 8.1, Windows Server 2008, Windows Server 2008 R2, Windows Server 2012, or Windows Server 2012 R2 host operating system fails to properly validate input from an authenticated user on a guest operating system, aka "Hyper-V Information Disclosure Vulnerability." This CVE ID is unique from CVE-2017-0169.

Affected products

  • Microsoft Windows 8.1: any version
  • Microsoft Windows Server 2008: any version; version r2 only
  • Microsoft Windows Server 2012: any version; version r2 only

Published 2017-04-12. Last modified 2026-06-17.