CVE-2018-0843: Infoleak
The Windows kernel in Windows 10 version 1709 and Windows Server, version 1709 allows an information disclosure vulnerability due to how objects in memory are handled, aka "Windows Kernel Information Disclosure Vulnerability". This CVE is unique from CVE-2018-0742, CVE-2018-0756, CVE-2018-0809 and CVE-2018-0820.
Affected Software
Remediation
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
Exploitation requires local access and low privileges. No user interaction is required, but the attack complexity is rated high.
Which systems are identified as affected?
The affected systems are Windows 10 version 1709 and Windows Server version 1709. The listed software includes Microsoft Windows 10 and Microsoft Windows Server 2016.
What is the potential impact of successful exploitation?
Successful exploitation can disclose information from memory. The CVSS vector indicates high confidentiality impact, with no integrity or availability impact.
Is a fix available?
Yes. A patch is available for this vulnerability.