CVE-2017-8515 is a denial-of-service vulnerability affecting Microsoft Windows 10 versions 1511, 1607, and 1703, and Windows Server 2016. An unauthenticated attacker can trigger this by sending a specially crafted kernel mode request, leading to a denial of service on the target system. With a CVSS score of 5.5 (Medium), this vulnerability has a low attack complexity and requires local access, but can result in high availability impact. There is no known public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog. While community discussion is minimal, it has been mentioned in the context of vulnerabilities exploited by Chinese state-sponsored hackers.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1511CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1511:*:*:*:*:*:*:* | ||
1607CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:* | ||
1703CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.