2.1
CVSSv2

CVE-2017-8469

Published: 15/06/2017 Updated: 19/03/2019
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The kernel in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows an authenticated malicious user to obtain information via a specially crafted application. aka "Windows Kernel Information Disclosure Vulnerability," a different vulnerability than CVE-2017-8491, CVE-2017-8490, CVE-2017-8489, CVE-2017-8488, CVE-2017-8485, CVE-2017-8483, CVE-2017-8482, CVE-2017-8481, CVE-2017-8480, CVE-2017-8478, CVE-2017-8479, CVE-2017-8476, CVE-2017-8474, CVE-2017-8462, CVE-2017-0300, CVE-2017-0299, and CVE-2017-0297.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 8.1 -

microsoft windows rt 8.1 -

microsoft windows server 2008 -

microsoft windows server 2008 r2

microsoft windows 7 -

microsoft windows server 2012 r2

microsoft windows server 2012 -

Exploits

/* Source: bugschromiumorg/p/project-zero/issues/detail?id=1159 We have discovered that the handler of the IOCTL_DISK_GET_DRIVE_LAYOUT_EX IOCTL in partmgrsys discloses portions of uninitialized pool memory to user-mode clients The issue can be reproduced by running the attached proof-of-concept program on a system with the Special Poo ...

Github Repositories

Data from the MSRC portal This repository holds the collection of the security Bulletin in HTML format and CVRF documents in XML format These files have been generated by MsrcSecurityUpdates PowerShell Module The Microsoft Security Response Center (MSRC) portal is located at portalmsrcmicrosoftcom/en-us/security-guidance Blog posts See the MSRC blog posts: Date