Microsoft Windows Kernel ‘Win32k.sys’ CVE-2017-8467 Local Privilege Escalation Vulnerability
by CIRT Team
Description: Graphics in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to the way it handles objects in memory, aka “Win32k Elevation of Privilege Vulnerability”.
Impact: A local attacker can exploit this issue to gain elevated privileges.
Mitigation: Updates are available. Please check specific vendor advisory for more information.
Reference URL’s:
- http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=2017-8467
- http://www.securityfocus.com/bid/99409/info
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8467
Recommended Posts
Active Exploitation of Critical F5 BIG – IP Vulnerability (CVE–2023-46747) Uncovered in Bangladesh
06 Nov 2024 - Security Advisories & Alerts