CVE Database
/

CVE-2018-8589

Back to search

CVE-2018-8589

Published: Nov 14, 2018

Modified: Oct 21, 2025

PUBLISHED

Description

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.

VendorProductVersions

Microsoft

Windows Server 2008

affected
32-bit Systems Service Pack 2
affected
32-bit Systems Service Pack 2 (Server Core installation)
affected
Itanium-Based Systems Service Pack 2
affected
x64-based Systems Service Pack 2
affected
x64-based Systems Service Pack 2 (Server Core installation)

Microsoft

Windows 7

affected
32-bit Systems Service Pack 1
affected
x64-based Systems Service Pack 1

Microsoft

Windows Server 2008 R2

affected
Itanium-Based Systems Service Pack 1
affected
x64-based Systems Service Pack 1
affected
x64-based Systems Service Pack 1 (Server Core installation)

References

105796
vdb-entry
x_refsource_BID
1042140
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now