Information disclosure in Windows and Windows Server - CVE-2018-8493
Published: October 10, 2018
Windows
Windows Server
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to the Windows TCP/IP stack improperly handles fragmented IP packets. A remote attacker can specially crafted fragmented IP packets to the affected system and gain access to potentially sensitive information.