Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow information disclosure, due to how Internet Explorer handles objects in memory, aka "Internet Explorer Information Disclosure Vulnerability".
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/102861 | third party advisory vdb entry |
http://www.securitytracker.com/id/1040370 | third party advisory vdb entry |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0847 | patch vendor advisory |