CVE-2018-8120: Microsoft Win32k Privilege Escalation Vulnerability
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.
Other sources
A privilege escalation vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8120?
CVE-2018-8120 has a severity rating of important according to Microsoft.
How do I fix CVE-2018-8120?
To fix CVE-2018-8120, it is recommended to install the security updates provided by Microsoft for affected versions of Windows.
Which systems are affected by CVE-2018-8120?
CVE-2018-8120 affects Windows Server 2008, Windows 7, and Windows Server 2008 R2.
What type of vulnerability is CVE-2018-8120?
CVE-2018-8120 is classified as an elevation of privilege vulnerability.
Can CVE-2018-8120 be exploited remotely?
CVE-2018-8120 requires local access to exploit, meaning it cannot be exploited remotely.