CVE-2018-0815
published 2018-03-14CVE-2018-0815: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows an elevation of privilege vulnerability…
PriorityP430high7CVSS 3.0
AVLACHPRLUINSUCHIHAH
EPSS
1.35%
68.1th percentile
The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows GDI Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0816, and CVE-2018-0817.
Affected
15 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft_corporation | windows | — | — |
| msrc | windows_7_for_32-bit_systems_service_pack_1 | — | — |
| msrc | windows_7_for_x64-based_systems_service_pack_1 | — | — |
| msrc | windows_server_2008_for_32-bit_systems_service_pack_2 | — | — |
| msrc | windows_server_2008_for_itanium-based_systems_service_pack_2 | — | — |
| msrc | windows_server_2008_for_x64-based_systems_service_pack_2 | — | — |
| msrc | windows_server_2008_r2_for_itanium-based_systems_service_pack_1 | — | — |
| msrc | windows_server_2008_r2_for_x64-based_systems_service_pack_1 | — | — |
CVSS provenance
nvdv3.07.0HIGHCVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
vendor_msrc7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r62x-rw26-g5pc: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
ghsa_unreviewed·2022-05-13·CVSS 7.0
CVE-2018-0816 [HIGH] GHSA-r62x-rw26-g5pc: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows GDI Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0815 and CVE-2018-0817.
GHSA
GHSA-fwp6-2rf9-9gvm: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
ghsa_unreviewed·2022-05-13·CVSS 7.0
CVE-2018-0817 [HIGH] GHSA-fwp6-2rf9-9gvm: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8
The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows GDI Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0815 and CVE-2018-0816.
GHSA
GHSA-m6wj-p6f5-m5w3: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows an elevation of privilege vulnera
ghsa_unreviewed·2022-05-13·CVSS 7.0
CVE-2018-0815 [HIGH] GHSA-m6wj-p6f5-m5w3: The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows an elevation of privilege vulnera
The Windows Graphics Device Interface (GDI) in Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows GDI Elevation of Privilege Vulnerability". This CVE is unique from CVE-2018-0816, and CVE-2018-0817.
Microsoft
Windows GDI Elevation of Privilege Vulnerability
vendor_msrc·2018-03-13·CVSS 7.0
CVE-2018-0815 [HIGH] Windows GDI Elevation of Privilege Vulnerability
Windows GDI Elevation of Privilege Vulnerability
Description: An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
To exploit this vulnerability, an attacker would first have to log on to the system. An attacker could then run a specially crafted application that could exploit the vulnerability and take control of an affected system.
The update addresses the vulnerability by correcting how GDI handles objects in memory and by preventing instances of unintended user-mode privilege elevation.
Micro
No detection rules found.
No public exploits indexed.
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits y vulnerabilidades
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
# March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro
2018/03/14
Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative: CVE-2018-0815, CVE-2018-0816, CVE-2018-0878, CVE-2018-0889, CVE-2018-0929, and CVE-2018-0977.
Microso
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro 2018/03/14 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977 .
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Ausnutzung von Schwachstellen
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-097
Trendmicro
March Patch Tuesday Fixes 75 Security Issues
blogs_trendmicro·2018-03-14·CVSS 7.0
[HIGH] March Patch Tuesday Fixes 75 Security Issues
Exploits & Vulnerabilities
## March Patch Tuesday Fixes 75 Security Issues
Microsoft’s Patch Tuesday has fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities patched, 14 were rated as Critical and 61 Important.
By: Trend Micro Mar 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for March is an eventful one, with updates that comprise fixes for 75 security issues and a change of tack in its patch deployment process for Windows 10. Of the vulnerabilities Microsoft patched for this month, 14 were rated as Critical and 61 Important. Six of these were disclosed through Trend Micro’s Zero Day Initiative : CVE-2018-0815 , CVE-2018-0816 , CVE-2018-0878 , CVE-2018-0889 , CVE-2018-0929 , and CVE-2018-0977 .
Talos
Microsoft Patch Tuesday - March 2018
blogs_talos·2018-03-13·CVSS 7.5
[HIGH] Microsoft Patch Tuesday - March 2018
### Microsoft Patch Tuesday - March 2018 Today, Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 74 new vulnerabilities, with 14 of them rated critical and 59 of them rated important. These vulnerabilities impact Internet Explorer, Edge, Exchange, Scripting Engine, Windows Shell and more.
#### Critical Vulnerabilities This month, Microsoft is addressing 14 vulnerabilities that are rated as critical.
The vulnerabilities rated as critical are listed below:
CVE-2018-0872 - Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2018-0874 - Chakra Scripting Engine Memory Corruption Vulnerability
CVE-2018-0876 - Scripting Engine Memory Corruption Vulnerabi
Talos
Microsoft Patch Tuesday - March 2018
blogs_talos·2018-03-13·CVSS 7.5
[HIGH] Microsoft Patch Tuesday - March 2018
## Microsoft Patch Tuesday - March 2018
## Microsoft Patch Tuesday - March 2018 Today, Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 74 new vulnerabilities, with 14 of them rated critical and 59 of them rated important. These vulnerabilities impact Internet Explorer, Edge, Exchange, Scripting Engine, Windows Shell and more.
## Critical Vulnerabilities This month, Microsoft is addressing 14 vulnerabilities that are rated as critical.
The vulnerabilities rated as critical are listed below:
CVE-2018-0872 - Chakra Scripting Engine Memory Corruption Vulnerability CVE-2018-0874 - Chakra Scripting Engine Memory Corruption Vulnerability CVE-2018-0876 - Script
http://www.securityfocus.com/bid/103234http://www.securitytracker.com/id/1040515https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0815http://www.securityfocus.com/bid/103234http://www.securitytracker.com/id/1040515https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0815
2018-03-14
Published