PT-2016-2010 · Microsoft · Windows 7+8

Published

2016-05-10

·

Updated

2018-10-12

·

CVE-2016-0168

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to the fixed version Windows Vista SP2 Windows Server 2008 SP2 and R2 SP1 Windows 7 SP1 Windows 8.1 Windows Server 2012 Gold and R2 Windows RT 8.1 Windows 10 Gold and 1511
Description The issue is related to a lack of protection for internal data in the Windows Graphics Component. It allows a remote attacker to obtain sensitive information by using a specially crafted document.
Recommendations For Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511, update to a version that includes the fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-01344
CVE-2016-0168

Affected Products

Windows
Windows 10
Windows 7
Windows 8.1
Windows Graphics
Windows Rt 8.1
Windows Server 2008
Windows Server 2012
Windows Vista