MS15-007 - Vulnerability in Network Policy Server RADIUS Implementation Could Cause Denial of Service

Bulletin ID: 

MS15-007

Severity: 

Important

Description: 

This security update resolves a privately reported vulnerability in Microsoft Windows. The vulnerability could allow denial of service on an Internet Authentication Service (IAS) or Network Policy Server (NPS) if an attacker sends specially crafted username strings to the IAS or NPS. Note that the denial of service vulnerability would not allow an attacker to execute code or to elevate user rights; however, it could prevent RADIUS authentication on the IAS or NPS.

Security advisory: 

Related content