Main
Vulnerability Database
Exploits
ID:1265 - Exploit for Information disclosure in Windows and Windows Server - CVE-2017-8564
ID:1265 - Exploit for Information disclosure in Windows and Windows Server - CVE-2017-8564
Published: March 18, 2020
Vulnerability identifier: #VU7449
Vulnerability risk: Low
CVE-ID: CVE-2017-8564
CWE-ID: CWE-200
Exploitation vector: Local access
Vulnerable software:
Windows
Windows Server
Windows
Windows Server
Link to public exploit:
Vulnerability description
The vulnerability allows a local user to obtain potentially sensitive information.
The vulnerability exists due to Windows kernel fails to properly initialize a memory address. A local user can obtain information that could lead to a Kernel Address Space Layout Randomization (KASLR) bypass.
Remediation
Install updates from vendor's website.