First published: Tue Jul 11 2017(Updated: )
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to the way that the Windows Common Log File System (CLFS) driver handles objects in memory, aka "Windows CLFS Elevation of Privilege Vulnerability".
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Windows 10 | ||
Windows 10 | =1511 | |
Windows 10 | =1607 | |
Windows 10 | =1703 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows | ||
Microsoft Windows RT | ||
Microsoft Windows Server | =sp2 | |
Microsoft Windows Server | =r2-sp1 | |
Microsoft Windows Server | ||
Microsoft Windows Server | =r2 | |
Microsoft Windows Server 2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-8590 has been rated with a critical severity level due to its potential for elevation of privilege.
CVE-2017-8590 affects several versions including Windows 7 SP1, Windows Server 2008 SP2, Windows 8.1, Windows 10 Gold and later, and Windows Server 2016.
To fix CVE-2017-8590, you should apply the latest security updates from Microsoft for the affected versions of Windows.
CVE-2017-8590 is an elevation of privilege vulnerability that allows an attacker to gain higher privileges on the system.
CVE-2017-8590 requires local access to the system, so it cannot be exploited remotely.