#VU8784 Information disclosure in Windows and Windows Server - CVE-2017-11817
Published: October 10, 2017 / Updated: October 10, 2017
Windows
Windows Server
Microsoft
Description
The vulnerability allows a local attacker to obtain potentially sensitive information.
The vulnerability exists due to an error when the Windows kernel improperly initializes objects in memory. A local attacker can run a specially crafted application and gain access to potentially sensitive information.
Successful exploitation of the vulnerability may result in further attacks.