Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.811118
Category:Windows : Microsoft Bulletins
Title:Microsoft COM Multiple Vulnerabilities (KB4018556)
Summary:This host is missing an important security; update according to Microsoft KB4018556
Description:Summary:
This host is missing an important security
update according to Microsoft KB4018556

Vulnerability Insight:
Multiple flaws exist due to:

- The Windows kernel improperly initializes objects in memory.

- The way that the Windows Kernel handles objects in memory.

- Windows fails to properly validate input before loading type libraries.

- An unspecified error in Windows COM Aggregate Marshaler.

Vulnerability Impact:
An attacker who successfully exploited the
vulnerability can elevate their privilege level, can lead to denial of
service condition, could obtain information to further compromise the users
system and run arbitrary code with elevated privileges.

Affected Software/OS:
Microsoft Windows Server 2008 x32/x64 Edition Service Pack 2.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
6.9

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-0213
BugTraq ID: 98102
http://www.securityfocus.com/bid/98102
https://www.exploit-db.com/exploits/42020/
http://www.securitytracker.com/id/1038457
Common Vulnerability Exposure (CVE) ID: CVE-2017-0214
BugTraq ID: 98103
http://www.securityfocus.com/bid/98103
https://www.exploit-db.com/exploits/42021/
Common Vulnerability Exposure (CVE) ID: CVE-2017-0244
BugTraq ID: 98109
http://www.securityfocus.com/bid/98109
http://www.securitytracker.com/id/1038453
Common Vulnerability Exposure (CVE) ID: CVE-2017-0258
BugTraq ID: 98112
http://www.securityfocus.com/bid/98112
https://www.exploit-db.com/exploits/42006/
http://www.securitytracker.com/id/1038446
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.