Use-after-free in Microsoft Windows and Windows Server - CVE-2018-8453
Published: October 9, 2018 / Updated: June 17, 2021
Vulnerability details
The vulnerability exists due to a use-after free error in win32kfull!xxxDestroyWindow Win32k component. A local user can run a specially crafted application, trigger memory corruption and execute arbitrary code in kernel mode.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Note: the vulnerability has been actively exploited in the wild.
Affected software
Windows Server
How to mitigate CVE-2018-8453
Links to Public Exploits and PoC-codes
- Exploit #6067 - Windows - NtUserSetWindowFNID Win32k User Callback Privilege Escalation (Metasploit) (June 17, 2021)
- Exploit #2798 - WindowsExploitationResources (Resources pertaining to advanced Windows exploit development and semi-related topics) (June 2, 2020)
- Exploit #1522 - Windows NtUserSetWindowFNID Win32k User Callback (March 18, 2020)