CVE-2018-8471 — Improper Resource Shutdown or Release in Microsoft Windows 10
Severity
7.8HIGHNVD
EPSS
0.9%
top 25.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 14
Latest updateMay 13
Description
An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handles objects in memory, aka "Microsoft RemoteFX Virtual GPU miniport driver Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 8.1, Windows 7, Windows Server 2019.
CVSS vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9
Affected Packages24 packages
Patches
🔴Vulnerability Details
1GHSA▶
GHSA-j68m-gc9c-h89h: An elevation of privilege vulnerability exists in the way that the Microsoft RemoteFX Virtual GPU miniport driver handles objects in memory, aka "Micr↗2022-05-13
📋Vendor Advisories
1Microsoft
▶