Double free in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Windows_server_2012 | Microsoft | r2 (including) | r2 (including) |
Windows_server_2016 | Microsoft | * | 10.0.14393.8246 (excluding) |
Windows_server_2019 | Microsoft | * | 10.0.17763.7558 (excluding) |
Windows_server_2022 | Microsoft | * | 10.0.20348.3932 (excluding) |
Windows_server_2022_23h2 | Microsoft | * | 10.0.25398.1732 (excluding) |
Windows_server_2025 | Microsoft | * | 10.0.26100.4652 (excluding) |