MSRC compact vulnerability detail

CVE-2023-28217 · Windows Network Address Translation (NAT) Denial of Service Vulnerability

No description was published by MSRC.

Severity
Important
Impact
Denial of Service
CVSS
7.5 base · 6.5 temporal
Release
2023-04-11
Signals
Windows Network Address Translation (NAT) Denial of Service Exploited: No Publicly disclosed: No Exploitability: Exploitation Less Likely
CWE
Patch Diff
Loading module diff metadata...
Resolved binary override
Use this when the MSRC module name cannot be mapped automatically or the resolved binary looks wrong.
Old version New version
Description
No description was published by MSRC.
FAQ / Articles
Mitigation
The following mitigating factors might be helpful in your situation: This vulnerability is limited to attacker traffic inside the NAT firewall. An enterprise perimeter firewall can be used to mitigate this attack. A NAT firewall works by only allowing requested internet traffic to pass through the gateway. Internet routed network traffic cannot attack the Windows Network Address Translation Service for this vulnerability.