VYPR
Medium severity5.3NVD Advisory· Published Jan 4, 2018· Updated Jun 17, 2026

CVE-2018-0741

CVE-2018-0741

Description

The Color Management Module (Icm32.dll) in Windows 7 SP1 and Windows Server 2008 SP2 and R2 SP1 allows an information disclosure vulnerability due to the way objects are handled in memory, aka "Microsoft Color Management Information Disclosure Vulnerability".

Affected products

6
  • Microsoft Corporation/Color Management Module (Icm32.dll)v5
    Range: Windows 7 SP1 and Windows Server 2008 SP2 and R2 SP1
  • Microsoft/Windows 7llm-fuzzy2 versions
    SP1+ 1 more
    • (no CPE)range: SP1
    • cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:*:*
  • Microsoft/Windows Server 2008llm-fuzzy3 versions
    SP2, R2 SP1+ 2 more
    • (no CPE)range: SP2, R2 SP1
    • cpe:2.3:o:microsoft:windows_server_2008:*:sp2:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.