Medium severity5.5NVD Advisory· Published Dec 12, 2018· Updated Jun 17, 2026
CVE-2018-8637
CVE-2018-8637
Description
An information disclosure vulnerability exists in Windows kernel that could allow an attacker to retrieve information that could lead to a Kernel Address Space Layout Randomization (KASLR) bypass, aka "Win32k Information Disclosure Vulnerability." This affects Windows 10 Servers, Windows 10, Windows Server 2019.
Affected products
8cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:*
- (no CPE)range: Version 1803 for 32-bit Systems
- cpe:2.3:o:microsoft:windows_server_2016:1803:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
- (no CPE)range: (Server Core installation)
- Range: version 1803 (Server Core Installation)
Patches
Vulnerability mechanics
References
2- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8637nvdPatchVendor Advisory
- www.securityfocus.com/bid/106095nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.