Windows Subsystem for Linux in Windows 10 version 1703, Windows 10 version 1709, and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory, aka "Windows Subsystem for Linux Elevation of Privilege Vulnerability".
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0743 | Patch Vendor Advisory |
https://twitter.com/AmarSaar/status/948892321755598848 | Third Party Advisory |
http://www.securitytracker.com/id/1040094 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/102350 | Third Party Advisory VDB Entry |
https://github.com/saaramar/execve_exploit | Exploit Patch Third Party Advisory |
https://www.exploit-db.com/exploits/43962/ | Exploit Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-01-04 06:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-0743
Mitre link : CVE-2018-0743
JSON object : View
CWE
Products Affected
microsoft
- windows_server_2016
- windows_10