RULE(RULE ID:2005137)

Rule General Information
Release Date: 2019-01-17
Rule Name: MISC Microsoft Windows DHCP Client Code Execution Vulnerability -8 (CVE-2019-0547)
Severity:
CVE ID:
Rule Protection Details
Description: A memory corruption vulnerability exists in the Windows DHCP client when an attacker sends specially crafted DHCP responses to a client, aka "Windows DHCP Client Remote Code Execution Vulnerability." This affects Windows 10, Windows 10 Servers.
Impact: A remote attacker could exploit this vulnerability by sending maliciously crafted DHCP responses to a vulnerable Windows system. Successful exploitation of this vulnerability could allow the attacker to execute arbitrary code with administrative privileges.
Affected OS: Network Device, Solaris, FreeBSD, Windows, Mac OS, iOS, Other Unix, Linux, Others, Android
Reference: SecurityFocusBID:106394
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0547
Solutions
Applying a patch is able to eliminate this problem.