Description
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected products
- Microsoft / Windows8.1 for x64-based systems β 8.1 for x64-based systems
- Microsoft / Windows10 for 32-bit Systems β 10 for 32-bit Systems
- Microsoft / Windows10 for x64-based Systems β 10 for x64-based Systems
- Microsoft / Windows10 Version 1607 for 32-bit Systems β 10 Version 1607 for 32-bit Systems
- Microsoft / Windows10 Version 1607 for x64-based Systems β 10 Version 1607 for x64-based Systems
- Microsoft / Windows10 Version 1703 for 32-bit Systems β 10 Version 1703 for 32-bit Systems
- Microsoft / Windows10 Version 1703 for x64-based Systems β 10 Version 1703 for x64-based Systems
- Microsoft / Windows7 for 32-bit Systems Service Pack 1 β 7 for 32-bit Systems Service Pack 1
- Microsoft / Windows10 Version 1709 for 32-bit Systems β 10 Version 1709 for 32-bit Systems
- Microsoft / Windows10 Version 1709 for x64-based Systems β 10 Version 1709 for x64-based Systems
- Microsoft / Windows10 Version 1803 for 32-bit Systems β 10 Version 1803 for 32-bit Systems
- Microsoft / Windows10 Version 1803 for x64-based Systems β 10 Version 1803 for x64-based Systems
- Microsoft / Windows10 Version 1803 for ARM64-based Systems β 10 Version 1803 for ARM64-based Systems
- Microsoft / Windows10 Version 1809 for 32-bit Systems β 10 Version 1809 for 32-bit Systems
- Microsoft / Windows7 for x64-based Systems Service Pack 1 β 7 for x64-based Systems Service Pack 1
- Microsoft / Windows8.1 for 32-bit systems β 8.1 for 32-bit systems
- Microsoft / WindowsRT 8.1 β RT 8.1
- Microsoft / Windows10 Version 1809 for x64-based Systems β 10 Version 1809 for x64-based Systems
- Microsoft / Windows10 Version 1809 for ARM64-based Systems β 10 Version 1809 for ARM64-based Systems
- Microsoft / Windows10 Version 1709 for ARM64-based Systems β 10 Version 1709 for ARM64-based Systems
- Microsoft / Windows 10 Version 1903 for 32-bit Systemsunspecified β unspecified
- Microsoft / Windows 10 Version 1903 for ARM64-based Systemsunspecified β unspecified
- Microsoft / Windows 10 Version 1903 for x64-based Systemsunspecified β unspecified
- Microsoft / Windows Serverversion 1803 (Core Installation) β version 1803 (Core Installation)
- Microsoft / Windows Server2008 R2 for x64-based Systems Service Pack 1 (Core installation) β 2008 R2 for x64-based Systems Service Pack 1 (Core installation)
- Microsoft / Windows Server2008 R2 for Itanium-Based Systems Service Pack 1 β 2008 R2 for Itanium-Based Systems Service Pack 1
- Microsoft / Windows Server2008 R2 for x64-based Systems Service Pack 1 β 2008 R2 for x64-based Systems Service Pack 1
- Microsoft / Windows Server2008 for 32-bit Systems Service Pack 2 (Core installation) β 2008 for 32-bit Systems Service Pack 2 (Core installation)
- Microsoft / Windows Server2012 β 2012
- Microsoft / Windows Server2012 (Core installation) β 2012 (Core installation)
- Microsoft / Windows Server2012 R2 β 2012 R2
- Microsoft / Windows Server2012 R2 (Core installation) β 2012 R2 (Core installation)
- Microsoft / Windows Server2016 β 2016
- Microsoft / Windows Server2016 (Core installation) β 2016 (Core installation)
- Microsoft / Windows Server2019 β 2019
- Microsoft / Windows Server2019 (Core installation) β 2019 (Core installation)
- Microsoft / Windows Server2008 for Itanium-Based Systems Service Pack 2 β 2008 for Itanium-Based Systems Service Pack 2
- Microsoft / Windows Server2008 for 32-bit Systems Service Pack 2 β 2008 for 32-bit Systems Service Pack 2
- Microsoft / Windows Server2008 for x64-based Systems Service Pack 2 β 2008 for x64-based Systems Service Pack 2
- Microsoft / Windows Server2008 for x64-based Systems Service Pack 2 (Core installation) β 2008 for x64-based Systems Service Pack 2 (Core installation)
- Microsoft / Windows Server, version 1903 (Server Core installation)unspecified β unspecified