Microsoft · Windows Server 2008 · CVE-2017-11772
**Name of the Vulnerable Software and Affected Versions**
Microsoft Windows versions prior to the fixed version
Microsoft Windows Server 2008 SP2 and R2 SP1
Microsoft Windows 7 SP1
Microsoft Windows 8.1
Microsoft Windows Server 2012 Gold and R2
Microsoft Windows RT 8.1
Microsoft Windows 10 Gold, 1511, 1607, and 1703
Microsoft Windows Server 2016
**Description**
The issue allows attackers to obtain sensitive information and affect the system due to the Microsoft Windows Search component failing to properly handle objects in memory.
**Recommendations**
For Microsoft Windows Server 2008 SP2 and R2 SP1, update to a version that includes the fix for this issue.
For Microsoft Windows 7 SP1, update to a version that includes the fix for this issue.
For Microsoft Windows 8.1, update to a version that includes the fix for this issue.
For Microsoft Windows Server 2012 Gold and R2, update to a version that includes the fix for this issue.
For Microsoft Windows RT 8.1, update to a version that includes the fix for this issue.
For Microsoft Windows 10 Gold, 1511, 1607, and 1703, update to a version that includes the fix for this issue.
For Microsoft Windows Server 2016, update to a version that includes the fix for this issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.