CVE-2018-0977Corporation Windows vulnerability

10 documents5 sources
Severity
7.0HIGHNVD
EPSS
1.1%
top 21.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 14
Latest updateMay 13

Description

The Windows kernel mode driver in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to how objects are handled in memory, aka "Win32k Elevation of Privilege Vulnerability".

CVSS vector

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Patches

🔴Vulnerability Details

1
GHSA
GHSA-89rh-7989-4j75: The Windows kernel mode driver in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevatio2022-05-13

📋Vendor Advisories

1
Microsoft
Win32k Elevation of Privilege Vulnerability2018-03-13

🕵️Threat Intelligence

7
Trendmicro
March Patch Tuesday Fixes 75 Security Issues2018-03-14
Trendmicro
March Patch Tuesday Fixes 75 Security Issues2018-03-14
Trendmicro
March Patch Tuesday Fixes 75 Security Issues2018-03-14
Trendmicro
March Patch Tuesday Fixes 75 Security Issues2018-03-14
Trendmicro
March Patch Tuesday Fixes 75 Security Issues2018-03-14
CVE-2018-0977 — Corporation Windows vulnerability | cvebase