New Search

Windows GDI+ Information Disclosure Vulnerability – CVE-2017-8684

oval:org.cisecurity:def:3212

Windows GDI+ on Microsoft Windows Server 2008 SP2 and R2 SP1 Windows 7 SP1 Windows 8.1 Windows Server 2012 Gold and R2 and Windows RT 8.1 allows information disclosure by the way it discloses kernel memory addresses aka "Windows GDI+ Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8685 and CVE-2017-8688.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows 8.1
  • Microsoft Windows Server 2008 R2
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2012 R2
  • Microsoft Windows Server 2012
  • Microsoft Windows 7
Class:
vulnerability
Reference(s):
  • CVE-2017-8684
Product(s):