First published: Wed Aug 15 2018(Updated: )
An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8394, CVE-2018-8398.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 7 | =sp1 | |
Microsoft Windows Server | =sp2 | |
Microsoft Windows Server 2008 Itanium | =sp2 | |
Microsoft Windows Server | =r2-sp1 | |
Microsoft Windows Server 2008 Itanium | =r2-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8396 has a severity rating of important, indicating potential risk to vulnerable systems.
To fix CVE-2018-8396, apply the security update provided by Microsoft for vulnerable versions of Windows.
CVE-2018-8396 affects Windows 7, Windows Server 2008, and Windows Server 2008 R2.
CVE-2018-8396 is an information disclosure vulnerability that allows unauthorized access to the contents of memory.
CVE-2018-8396 can be exploited by local users with certain conditions, rather than remotely.