Endpoint Vulnerability

Windows GDI+ Information Disclosure Vulnerability

Description

A information disclosure vulnerability exists when the Windows GDI+ component improperly discloses kernel memory addresses. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’s system.

Affected Products

Windows 7,Windows Server 2008

References

CVE-2017-8685,