CVE-2018-0825
published 2018-02-15CVE-2018-0825: StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and…
PriorityP352high7.5CVSS 3.0
AVNACHPRNUIRSUCHIHAH
EPSS
16.78%
96.6th percentile
StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a remote code execution vulnerability due to how objects are handled in memory, aka "StructuredQuery Remote Code Execution Vulnerability".
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_server | — | — |
| microsoft | windows_server_2008 | — | — |
| microsoft | windows_server_2012 | — | — |
| microsoft_corporation | structuredquery | — | — |
| msrc | windows_10 | — | — |
| msrc | windows_10_version_1511 | — | — |
| msrc | windows_10_version_1607 | — | — |
| msrc | windows_10_version_1703 | — | — |
| msrc | windows_10_version_1709 | — | — |
| msrc | windows_7 | — | — |
| msrc | windows_8.1 | — | — |
| msrc | windows_rt_8.1 | — | — |
| msrc | windows_server_2008 | — | — |
| msrc | windows_server_2008_r2 | — | — |
| msrc | windows_server_2012 | — | — |
| msrc | windows_server_2012_r2 | — | — |
| msrc | windows_server_2016 | — | — |
| msrc | windows_server_version_1709 | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
vendor_msrc8.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
StructuredQuery Remote Code Execution Vulnerability
vendor_msrc·2018-02-13·CVSS 8.1
CVE-2018-0825 [HIGH] StructuredQuery Remote Code Execution Vulnerability
StructuredQuery Remote Code Execution Vulnerability
Description: A remote code execution vulnerability exists in StructuredQuery when the software fails to properly handle objects in memory.
An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Exploitation of the vulnerability typically requires that a user open a specially crafted file. I
GHSA
GHSA-c4qg-xp59-6j7v: StructuredQuery in Windows 7 SP1, Windows 8
ghsa_unreviewed·2022-05-13
CVE-2018-0825 [HIGH] GHSA-c4qg-xp59-6j7v: StructuredQuery in Windows 7 SP1, Windows 8
StructuredQuery in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows a remote code execution vulnerability due to how objects are handled in memory, aka "StructuredQuery Remote Code Execution Vulnerability".
No detection rules found.
No public exploits indexed.
Qualys
Olympics, Patch Tuesday & Meltdown/Spectre | Qualys
blogs_qualys·2018-02-16
Olympics, Patch Tuesday & Meltdown/Spectre | Qualys
This week offered a representative sampling of different corners of the cyber security world: The monthly Patch Tuesday, a brazen attack against the Olympics, new Meltdown and Spectre concerns, and a boost for Intel’s bug bounty program.
Oh, and the gargantuan Equifax data breach may have been even bigger than previously thought.
### Winter Olympics hack confirmed
The 2018 Winter Olympics in Pyeongchang, South Korea are in full swing, featuring the world’s best ice skaters, skiers, hockey players and snowboarders, and also attracting, unfortunately, malicious hackers.
Attackers’ goals seem to be to disrupt the games in a variety of ways by interfering with and disabling IT systems.
Officials confirmed that hackers disrupted the opening ceremony by knocking the Winter Olympics’ website
Qualys
Hackers Hit the Olympics, While Patch Tuesday and Meltdown / Spectre Keep IT Departments On Edge
blogs_qualys·2018-02-16
Hackers Hit the Olympics, While Patch Tuesday and Meltdown / Spectre Keep IT Departments On Edge
This week offered a representative sampling of different corners of the cyber security world: The monthly Patch Tuesday, a brazen attack against the Olympics, new Meltdown and Spectre concerns, and a boost for Intel’s bug bounty program.
Oh, and the gargantuan Equifax data breach may have been even bigger than previously thought.
## Winter Olympics hack confirmed
The 2018 Winter Olympics in Pyeongchang, South Korea are in full swing, featuring the world’s best ice skaters, skiers, hockey players and snowboarders, and also attracting, unfortunately, malicious hackers.
Attackers’ goals seem to be to disrupt the games in a variety of ways by interfering with and disabling IT systems.
Officials confirmed that hackers disrupted the opening ceremony by knocking the Winter Olympics’ website
Trendmicro
February Patch Tuesday Fixes Privilege Escalation Bugs
blogs_trendmicro·2018-02-14·CVSS 8.8
[HIGH] February Patch Tuesday Fixes Privilege Escalation Bugs
Exploits & Vulnerabilities
## February Patch Tuesday Fixes Privilege Escalation Bugs
Microsoft’s Patch Tuesday has fixes addressing 50 security issues in Windows, Office, SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities.
By: Trend Micro 2018/02/14 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for February has a bevy of fixes addressing 50 security issues in Windows, Office (including Office Services and Web Apps), SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities. Of these, 14 were rated critical. Eight of these security flaws were disclosed through Trend Micro’
Trendmicro
February Patch Tuesday Fixes Privilege Escalation Bugs
blogs_trendmicro·2018-02-14·CVSS 8.8
[HIGH] February Patch Tuesday Fixes Privilege Escalation Bugs
Ausnutzung von Schwachstellen
## February Patch Tuesday Fixes Privilege Escalation Bugs
Microsoft’s Patch Tuesday has fixes addressing 50 security issues in Windows, Office, SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities.
By: Trend Micro Feb 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for February has a bevy of fixes addressing 50 security issues in Windows, Office (including Office Services and Web Apps), SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities. Of these, 14 were rated critical. Eight of these security flaws were disclosed through Trend M
Trendmicro
February Patch Tuesday Fixes Privilege Escalation Bugs
blogs_trendmicro·2018-02-14·CVSS 8.8
[HIGH] February Patch Tuesday Fixes Privilege Escalation Bugs
Exploits & Vulnerabilities
## February Patch Tuesday Fixes Privilege Escalation Bugs
Microsoft’s Patch Tuesday has fixes addressing 50 security issues in Windows, Office, SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities.
By: Trend Micro Feb 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for February has a bevy of fixes addressing 50 security issues in Windows, Office (including Office Services and Web Apps), SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities. Of these, 14 were rated critical. Eight of these security flaws were disclosed through Trend Micr
Trendmicro
February Patch Tuesday Fixes Privilege Escalation Bugs
blogs_trendmicro·2018-02-14·CVSS 8.8
[HIGH] February Patch Tuesday Fixes Privilege Escalation Bugs
Exploits & Vulnerabilities
# February Patch Tuesday Fixes Privilege Escalation Bugs
Microsoft’s Patch Tuesday has fixes addressing 50 security issues in Windows, Office, SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities.
By: Trend Micro
2018/02/14
Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for February has a bevy of fixes addressing 50 security issues in Windows, Office (including Office Services and Web Apps), SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities. Of these, 14 were rated critical. Eight of these security flaws were disclosed through Trend Micro’
Trendmicro
February Patch Tuesday Fixes Privilege Escalation Bugs
blogs_trendmicro·2018-02-14·CVSS 8.8
[HIGH] February Patch Tuesday Fixes Privilege Escalation Bugs
Exploits y vulnerabilidades
## February Patch Tuesday Fixes Privilege Escalation Bugs
Microsoft’s Patch Tuesday has fixes addressing 50 security issues in Windows, Office, SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities.
By: Trend Micro Feb 14, 2018 Read time: ( words)
Save to Folio
Microsoft’s Patch Tuesday for February has a bevy of fixes addressing 50 security issues in Windows, Office (including Office Services and Web Apps), SharePoint, Internet Explorer, Edge, and ChakraCore JavaScript engine, as well as additional patches for the notorious Meltdown and Spectre vulnerabilities. Of these, 14 were rated critical. Eight of these security flaws were disclosed through Trend Mic
Talos
Microsoft Patch Tuesday - February 2018
blogs_talos·2018-02-13·CVSS 3.1
[LOW] Microsoft Patch Tuesday - February 2018
Microsoft Patch Tuesday - February 2018
Today Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 54 new vulnerabilities with 14 of them rated critical, 38 of them rated important, and 2 of them rated Moderate. These vulnerabilities impact Outlook, Edge, Scripting Engine, App Container, Windows, and more.
## Critical VulnerabilitiesThis month, Microsoft is addressing 14 vulnerabilities that are rated "critical." Talos believes one of these are notable and require prompt attention, detailed below.
CVE-2018-0852 - Microsoft Outlook Memory Corruption Vulnerability
A remote code execution vulnerability has been identified in Microsoft Outlook when the software
Talos
Microsoft Patch Tuesday - February 2018
blogs_talos·2018-02-13·CVSS 3.1
[LOW] Microsoft Patch Tuesday - February 2018
## Microsoft Patch Tuesday - February 2018
Microsoft Patch Tuesday - February 2018
Today Microsoft has released its monthly set of security advisories for vulnerabilities that have been identified and addressed in various products. This month's advisory release addresses 54 new vulnerabilities with 14 of them rated critical, 38 of them rated important, and 2 of them rated Moderate. These vulnerabilities impact Outlook, Edge, Scripting Engine, App Container, Windows, and more.
## Critical Vulnerabilities This month, Microsoft is addressing 14 vulnerabilities that are rated "critical." Talos believes one of these are notable and require prompt attention, detailed below.
CVE-2018-0852 - Microsoft Outlook Memory Corruption Vulnerability
A remote code execution vulnerability has been ident
Qualys
February 2018 Patch Tuesday - 55 Microsoft vulnerabilities patched, 45 for Adobe | Qualys
blogs_qualys·2018-02-13·CVSS 7.5
CVE-2018-0825 [HIGH] February 2018 Patch Tuesday - 55 Microsoft vulnerabilities patched, 45 for Adobe | Qualys
For this month’s Patch Tuesday, Microsoft has released patches covering 55 vulnerabilities, with 15 ranked as critical. This includes out-of-band Office patches from mid-January as well as patches for Adobe Flash that were released last week.
From this list, there are patches for a vulnerability (CVE-2018-0825) that impacts StructuredQuery in Windows servers and workstations. Exploitation of this vulnerability would be through a malicious file and would lead to remote code execution. This patch should be at the top of the priority list, aside from the Adobe Flash patches mentioned below.
There are also patches for vulnerabilities in Microsoft Outlook which could lead to remote code execution. Most of the remaining Microsoft vulnerabilities are for the Scripting Engine, which primarily im
Qualys
February 2018 Patch Tuesday – 55 Microsoft vulnerabilities patched, 45 for Adobe
blogs_qualys·2018-02-13·CVSS 7.5
CVE-2018-0825 [HIGH] February 2018 Patch Tuesday – 55 Microsoft vulnerabilities patched, 45 for Adobe
For this month’s Patch Tuesday, Microsoft has released patches covering 55 vulnerabilities, with 15 ranked as critical. This includes out-of-band Office patches from mid-January as well as patches for Adobe Flash that were released last week.
From this list, there are patches for a vulnerability (CVE-2018-0825) that impacts StructuredQuery in Windows servers and workstations. Exploitation of this vulnerability would be through a malicious file and would lead to remote code execution. This patch should be at the top of the priority list, aside from the Adobe Flash patches mentioned below.
There are also patches for vulnerabilities in Microsoft Outlook which could lead to remote code execution. Most of the remaining Microsoft vulnerabilities are for the Scripting Engine, which primarily im
Zscaler
Zscaler protects against 11 new vulnerabilities for Internet
blogs_zscaler·CVSS 7.8
[HIGH] Zscaler protects against 11 new vulnerabilities for Internet
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
http://www.securityfocus.com/bid/102920http://www.securitytracker.com/id/1040366https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0825http://www.securityfocus.com/bid/102920http://www.securitytracker.com/id/1040366https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0825
2018-02-15
Published