CVE-2018-0843
low-risk
Published 2018-02-15
The Windows kernel in Windows 10 version 1709 and Windows Server, version 1709 allows an information disclosure vulnerability due to how objects in memory are handled, aka "Windows Kernel Information Disclosure Vulnerability". This CVE is unique from CVE-2018-0742, CVE-2018-0756, CVE-2018-0809 and CVE-2018-0820.
Do I need to act?
~
3.5% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
4
CVSS 4.7/10
Medium
LOCAL
/ HIGH complexity
Affected Products (2)
Affected Vendors
References (6)
Third Party Advisory
http://www.securityfocus.com/bid/102951
Third Party Advisory
http://www.securitytracker.com/id/1040373
Third Party Advisory
http://www.securityfocus.com/bid/102951
Third Party Advisory
http://www.securitytracker.com/id/1040373
26
/ 100
low-risk
Severity
12/34 · Low
Exploitability
7/34 · Low
Exposure
7/34 · Low