PT-2017-18442 · Microsoft · Windows Subsystem For Linux+1
Published
2017-08-08
·
Updated
2019-10-03
·
CVE-2017-8622
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Windows Subsystem for Linux version 10 1703
Description
The issue arises from the Windows Subsystem for Linux failing to properly handle handles to NT pipes, leading to an elevation of privilege. This allows attackers to affect the system.
Recommendations
For Windows Subsystem for Linux version 10 1703, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows
Windows Subsystem For Linux