CVE-2018-0743 Information
Feb 14, 2021
cve
Description
Windows Subsystem for Linux in Windows 10 version 1703 Windows 10 version 1709 and Windows Server version 1709 allows an elevation of privilege vulnerability due to the way objects are handled in memory aka \Windows Subsystem for Linux Elevation of Privilege Vulnerability.
CVSS Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securityfocus.com/bid/102350 http://www.securitytracker.com/id/1040094 https://github.com/saaramar/execve_exploit https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0743 https://twitter.com/AmarSaar/status/948892321755598848 https://www.exploit-db.com/exploits/43962/
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.0
Share on: