CVE-2018-1037

An information disclosure vulnerability exists when Visual Studio improperly discloses limited contents of uninitialized memory while compiling program database (PDB) files, aka "Microsoft Visual Studio Information Disclosure Vulnerability." This affects Microsoft Visual Studio.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:visual_studio:2010:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2012:update5:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2013:update5:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2015:update3:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2017:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2017:15.6.6:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2017:15.7:*:preview:*:*:*:*:*

History

12 Aug 2021, 14:45

Type Values Removed Values Added
CPE cpe:2.3:a:microsoft:visual_studio:2017:15.7:preview:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio:2017:15.6.6:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2017:15.7:*:preview:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_2017:15.6.6:*:*:*:*:*:*:*

Information

Published : 2018-04-12 01:29

Updated : 2023-12-10 12:30


NVD link : CVE-2018-1037

Mitre link : CVE-2018-1037

CVE.ORG link : CVE-2018-1037


JSON object : View

Products Affected

microsoft

  • visual_studio
  • visual_studio_2017
CWE
CWE-908

Use of Uninitialized Resource