CVE-2017-11853 PUBLISHED CVSS 4.300000190734863 MEDIUM

Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to log in and run a specially crafted application due to the Windows kernel improperly initializing a memory address, aka "Windows Kernel Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-11842, CVE-2017-11849, and CVE-2017-11851.

EPSS 9.95% · 93.0th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
9.95%
93.0th percentile

Affected Products

VendorProductVersions
microsoftwindows_server_2008r2
microsoftwindows_server_2016
microsoftwindows_7
Microsoft CorporationWindows kernelWindows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709.
microsoftwindows_server_2012r2
microsoftwindows_101703, 1709, 1607
microsoftwindows_8.1
microsoftwindows_rt_8.1

Timeline

References

Open in Interactive Console →