Coming Soon...

Q-CERT website is currently under maintenance. We should be back shortly. Thank you for yor patience.

Microsoft HTTP Protocol Stack Remote Code Execution Vulnerability

Issued: 
Wednesday, 19 May, 2021
Last Revision: 
Wednesday, 19 May, 2021
Vendor: 
Severity Level: 
Summary: 

A new proof of concept exploit has been released for CVE-2021-31166, a remote code execution vulnerability in Microsoft's HTTP Protocol Stack that is exploitable without authentication and according to Microsoft, wormable between HTTP services. This use after free vulnerability affects the HTTP.SYS component which handles the HTTP protocol stack, specifically the http!UlpParseContentCoding method.

 

Microsoft addressed this issue in their monthly security update collection released on May 11th, it is recommended to apply  updates to prevent security incidents from happening.

Recommendation: 

It is recommended to apply the updates listed in Microsoft's website for this vulnerability, which can be found at the link below: