CVE-2017-11842 PUBLISHED CVSS 4.699999809265137 MEDIUM

Windows kernel in Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to log in and run a specially crafted application due to the Windows kernel improperly initializing a memory address, aka "Windows Kernel Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-11849, CVE-2017-11851, and CVE-2017-11853.

EPSS 4.12% · 88.5th percentile

Risk Scores

CVSS v3.0
4.699999809265137
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
4.12%
88.5th percentile

Affected Products

VendorProductVersions
microsoftwindows_8.1
microsoftwindows_101511, 1607, 1703
microsoftwindows_server1709
Microsoft CorporationWindows KernelWindows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709.
microsoftwindows_rt_8.1
microsoftwindows_server_2012r2
microsoftwindows_server_2016

Timeline

References

Open in Interactive Console →