Microsoft · Windows Server 2016 · CVE-2018-0904
Name of the Vulnerable Software and Affected Versions:
Windows Server 2008 R2 SP1
Windows 7 SP1
Windows 8.1 and RT 8.1
Windows Server 2012 and R2
Windows 10 versions 1511, 1607, 1703, and 1709
Windows Server 2016 and Windows Server, version 1709
Description:
The issue allows attackers to obtain sensitive information and affect the system due to how memory addresses are handled.
Recommendations:
For Windows Server 2008 R2 SP1, update to a newer version to mitigate the risk.
For Windows 7 SP1, update to a newer version to mitigate the risk.
For Windows 8.1 and RT 8.1, update to a newer version to mitigate the risk.
For Windows Server 2012 and R2, update to a newer version to mitigate the risk.
For Windows 10 versions 1511, 1607, 1703, and 1709, update to a newer version to mitigate the risk.
For Windows Server 2016 and Windows Server, version 1709, update to a newer version to mitigate the risk.