PT-2017-2326 · Microsoft · Windows Server 2012 R2+5

Liang Yin

·

Published

2017-06-13

·

Updated

2019-10-03

·

CVE-2017-8465

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions 8.1 through 10 (including Windows RT 8.1, Windows Server 2012 R2, Windows Server 2016, and versions 1511, 1607, 1703)
Description The issue is related to the improper handling of data in device memory by the Windows kernel, allowing a local attacker to execute code in the context of a privileged process. This can enable an attacker to run processes in an elevated context. The vulnerability is also described as an elevation-of-privilege issue that affects the system.
Recommendations For Microsoft Windows versions 8.1 through 10, update to a version that includes the fix for this issue to prevent exploitation. For Windows Server 2012 R2 and Windows Server 2016, apply the necessary patch or update to resolve the vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability for other affected versions, so ensure to monitor for updates from Microsoft.

Fix

LPE

Improper Preservation of Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01524
CVE-2017-8465
ZDI-17-402
ZDI-17-487

Affected Products

Windows
Windows 10
Windows 8.1
Windows Rt 8.1
Windows Server 2012 R2
Windows Server 2016