An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1393, CVE-2019-1394, CVE-2019-1395, CVE-2019-1408, CVE-2019-1434.
References
Link | Resource |
---|---|
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1396 | Patch Vendor Advisory |
https://www.zerodayinitiative.com/advisories/ZDI-19-982/ | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2019-11-12 19:15
Updated : 2023-03-01 15:32
NVD link : CVE-2019-1396
Mitre link : CVE-2019-1396
CVE.ORG link : CVE-2019-1396
JSON object : View
Products Affected
microsoft
- windows_8.1
- windows_10
- windows_server_2012
- windows_rt_8.1
- windows_7
- windows_server_2019
- windows_server_2016
- windows_server_2008
CWE
CWE-787
Out-of-bounds Write