CVE-2018-8410

An elevation of privilege vulnerability exists when the Windows Kernel API improperly handles registry objects in memory, aka "Windows Registry Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
References
Link Resource
http://www.securityfocus.com/bid/105256 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1041635 Third Party Advisory VDB Entry
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8410 Patch Vendor Advisory
https://www.exploit-db.com/exploits/45436/ Exploit Third Party Advisory VDB Entry
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_8.1:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2008:r2:sp1:*:*:*:itanium:*
cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2012:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2012:r2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2016:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2016:1709:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server:2016:1803:*:*:*:*:*:*

History

No history.

Information

Published : 2018-09-13 00:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-8410

Mitre link : CVE-2018-8410

CVE.ORG link : CVE-2018-8410


JSON object : View

Products Affected

microsoft

  • windows_8.1
  • windows_10
  • windows_server
  • windows_rt_8.1
  • windows_7
CWE
CWE-404

Improper Resource Shutdown or Release