CVE-2017-8473
MEDIUMMicrosoft Windows - Authenticated Information Disclosure via Win32k Memory Initialization
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-8473. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit demonstrates an information leak vulnerability in Windows 7-10 via the win32k!NtGdiGetRealizationInfo system call, allowing local attackers to read uninitialized kernel stack memory. The PoC sprays the kernel stack with known values and then triggers the vulnerability to leak 8 bytes of uninitialized memory.
Description
Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and Windows Server 2016 allow an authenticated attacker to run a specially crafted application when the Windows kernel improperly initializes objects in memory, aka "Win32k Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8470, CVE-2017-8471, CVE-2017-8472, CVE-2017-8475, CVE-2017-8477, and CVE-2017-8484.
Exploits (1)
This exploit demonstrates an information leak vulnerability in Windows 7-10 via the win32k!NtGdiGetRealizationInfo system call, allowing local attackers to read uninitialized kernel stack memory. The PoC sprays the kernel stack with known values and then triggers the vulnerability to leak 8 bytes of uninitialized memory.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N