New Search

Windows GDI+ Information Disclosure Vulnerability – CVE-2017-8685

oval:org.cisecurity:def:3210

Windows GDI+ on Microsoft Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allows information disclosure by the way it discloses kernel memory addresses aka "Windows GDI+ Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8684 and CVE-2017-8688.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows 7
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2008 R2
Class:
vulnerability
Reference(s):
  • CVE-2017-8685
Product(s):