cbcvebase.
CVE-2018-8638
published 2018-12-12

CVE-2018-8638: An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Information Disclosure Vulnerability." This…

PriorityP275medium5.5CVSS 3.0
AVLACLPRLUINSUCHINAN
ITWVulnCheck KEV
Exploited in the wild
EPSS
1.82%
76.0th percentile
An information disclosure vulnerability exists when DirectX improperly handles objects in memory, aka "DirectX Information Disclosure Vulnerability." This affects Windows 10, Windows Server 2019.

Affected

9 ranges
VendorProductVersion rangeFixed in
microsoftwindows_10
microsoftwindows_10
microsoftwindows_10
microsoftwindows_10
microsoftwindows_server_2019
msrcwindows_10_version_1809_for_32-bit_systems
msrcwindows_10_version_1809_for_arm64-based_systems
msrcwindows_10_version_1809_for_x64-based_systems
msrcwindows_server_2019

Detection & IOCsextracted from sources · hover to see the quote

  • Vulnerability is triggered by a specially crafted application run by an authenticated attacker; monitor for unusual DirectX/Microsoft Graphics Component API usage from user-space processes.
  • The disclosed information is uninitialized memory via DirectX improper object handling; look for anomalous memory read patterns in DirectX-related kernel calls.
  • ·Affects only Windows 10 and Windows Server 2019; detection efforts should be scoped to these platforms.
  • ·As of advisory publication, the vulnerability had not been publicly disclosed or exploited in the wild, but was rated 'Exploitation More Likely' for the latest software release.

CVSS provenance

nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vulncheck5.5MEDIUM
vendor_msrc4.7MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.