CVE-2017-11769HighCVSS 4.2

TRIE Remote Code Execution Vulnerability

Published
October 10, 2017
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

A remote code execution vulnerability exists in the way that certain Windows components handle the loading of DLL files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

🎯 Affected products10

  • Windows 10 Version 1511 for 32-bit Systems
  • Windows 10 Version 1511 for x64-based Systems
  • Windows 10 Version 1607 for 32-bit Systems
  • Windows 10 Version 1607 for x64-based Systems
  • Windows 10 Version 1703 for 32-bit Systems
  • Windows 10 Version 1703 for x64-based Systems
  • Windows 10 for 32-bit Systems
  • Windows 10 for x64-based Systems
  • Windows Server 2016
  • Windows Server 2016 (Server Core installation)

✅ Remediation

KB4041676 (Security Update) KB4042895 (Security Update) KB4041689 (Security Update) KB4041691 (Security Update)

🔗 References (5)