An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system.
An authenticated attacker could exploit this vulnerability by running a specially crafted application.
The update addresses the vulnerability by correcting how the Windows Graphics Component handles objects in memory.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1078 | Patch Vendor Advisory |
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1078 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:35
Type | Values Removed | Values Added |
---|---|---|
References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1078 - Patch, Vendor Advisory |
29 May 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) An information disclosure vulnerability exists when the Windows Graphics component improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system. An authenticated attacker could exploit this vulnerability by running a specially crafted application. The update addresses the vulnerability by correcting how the Windows Graphics Component handles objects in memory. |
Information
Published : 2019-08-14 21:15
Updated : 2024-11-21 04:35
NVD link : CVE-2019-1078
Mitre link : CVE-2019-1078
CVE.ORG link : CVE-2019-1078
JSON object : View
Products Affected
microsoft
- windows_server_2008
- windows_8.1
- windows_server_2016
- windows_server_2012
- windows_7
- windows_rt_8.1
- windows_server_2019
- windows_10
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor