VYPR
Low severity3.3NVD Advisory· Published Apr 12, 2017· Updated Jun 17, 2026

CVE-2017-0188

CVE-2017-0188

Description

A Win32k information disclosure vulnerability exists in Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, Windows 10, and Windows Server 2016 when the win32k component improperly provides kernel information. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user's system, aka "Win32k Information Disclosure Vulnerability." This CVE ID is unique from CVE-2017-0189.

Affected products

11
  • cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:microsoft:windows_10:*:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1511:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_8.1:*:*:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:microsoft:windows_server_2012:*:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
  • Microsoft/Windowsllm-fuzzy2 versions
    8.1, RT 8.1, Server 2012, Server 2012 R2, 10, Server 2016+ 1 more
    • (no CPE)range: 8.1, RT 8.1, Server 2012, Server 2012 R2, 10, Server 2016
    • (no CPE)range: Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, Windows 10, and Windows Server 2016

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.