CVE-2018-0824: Microsoft COM for Windows Deserialization of Untrusted Data Vulnerability
A remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "Microsoft COM for Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Other sources
Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution via a specially crafted file or script.
— CISA
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Discontinue use of the affected product if mitigations are unavailable: Microsoft Windows; Microsoft Windows 7; Microsoft Windows Operating System; Microsoft Windows RT (including Windows RT 8.1); Microsoft Windows 8.1; Windows 10 (including Windows 10 Servers); Microsoft Windows Server (including Windows Server 2008; Windows Server 2008 R2; Windows Server 2012; Windows Server 2012 R2; Windows Server 2016).
Event History
Frequently Asked Questions
What is the severity of CVE-2018-0824?
CVE-2018-0824 has a critical severity level as it allows for remote code execution.
How do I fix CVE-2018-0824?
To fix CVE-2018-0824, apply the latest security updates provided by Microsoft for your affected version of Windows.
What systems are affected by CVE-2018-0824?
CVE-2018-0824 affects multiple Windows versions, including Windows 7, Windows 10, and Windows Server 2012 R2.
Can CVE-2018-0824 be exploited remotely?
Yes, CVE-2018-0824 can be exploited remotely, allowing an attacker to execute code on an affected system.
What should I do if I cannot apply updates for CVE-2018-0824?
If unable to apply updates for CVE-2018-0824, consider isolating affected systems and implementing additional security measures.