First published: Thu Apr 12 2018(Updated: )
An information disclosure vulnerability exists when Windows Hyper-V on a host operating system fails to properly validate input from an authenticated user on a guest operating system, aka "Hyper-V Information Disclosure Vulnerability." This affects Windows Server 2012 R2, Windows RT 8.1, Windows Server 2016, Windows 8.1, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-0964.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 10 | ||
Microsoft Windows 10 | =1511 | |
Microsoft Windows 10 | =1607 | |
Microsoft Windows 10 | =1703 | |
Microsoft Windows 10 | =1709 | |
Microsoft Windows 8.1 | ||
Microsoft Windows RT | ||
Microsoft Windows Server 2012 x64 | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Server 2016 | =1709 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0957 has a severity rating of important, indicating a significant potential risk.
To fix CVE-2018-0957, apply the latest security updates provided by Microsoft for your affected version of Windows.
CVE-2018-0957 affects various versions including Windows 10, Windows 8.1, Windows RT, and Windows Server 2012 R2.
CVE-2018-0957 is classified as an information disclosure vulnerability in Windows Hyper-V.
CVE-2018-0957 allows an authenticated user on a guest operating system to potentially disclose information from the host operating system.