Microsoft Windows Audio Service CVE-2018-8454 Information Disclosure Vulnerability

description-logoDescription

An information disclosure vulnerability exists when Windows Audio Service fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could potentially disclose memory contents of a elevated process. To exploit this vulnerability, an authenticated attacker could run a specially crafted application in user mode. The update addresses the vulnerability by correcting how the Windows Audio Service handles objects in memory.

affected-products-logoAffected Applications

Windows 10
Windows Server version 1803 (Server Core Installation)
Windows Server version 1709 (Server Core Installation)
Windows Server 2019

CVE References

CVE-2018-8454