Remote code execution affecting IPv6 in Windows products.

This section contains time sensitive announcements about specific cyber threats, vulnerabilities and scams. Each alert has information you need to be aware of, and what actions to take to mitigate any risk to you or your organisation.

Subscribe to our updates to be notified as soon as we publish an alert.

1:00pm, 16 August 2024

TLP Rating: Clear

Remote code execution affecting IPv6 in Windows products.

A critical vulnerability is impacting IPv6 in Windows 10, Windows 11, and Windows Server.

 

What's happening

Systems affected

The vulnerability impacts Windows 10, Windows 11, and Windows Server. 

The vulnerability requires IPv6 to be enabled. 

What to do

Prevention

Update to the latest version.  
 
Update version numbers and more details on how to do the updates are on the Microsoft website (see the More Information section below)  

Mitigation

Disabling IPv6 prevents the system from being affected. 
 
More information on how to mitigate the vulnerability is on the Microsoft website (see the More Information section below). 

More information

Microsoft's page on the vulnerability. 
CVE-2024-38063 - Security Update Guide - Microsoft - Windows TCP/IP Remote Code Execution Vulnerability  External Link
 
If you require more information or further support, submit a report on our website or contact us on 0800 114 115. 
Report an incident