
Le marshaleur COM d'agrégat Windows dans Microsoft Windows Server 2008 SP2 et R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold et R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607 et 1703, ainsi que Windows Server 2016 présente une vulnérabilité d'élévation de privilège lorsqu'un attaquant exécute une application spécialement conçue, également appelée « Vulnérabilité d'élévation de privilège Windows COM ». Cet ID CVE est distinct de CVE-2017-0214.
Auteur : Google Security Research
CVE: 2017-0213
EDB-ID: 42020
Références : Project-Zero Microsoft Exploit-Database
Vidéo : Youtube
| Produit | Version | Mise à jour | Build | Testé |
|---|---|---|---|---|
| Windows 10 | 1511 | 10586 | √ | |
| Windows 10 | 1607 | 14393 | √ | |
| Windows 10 | 1703 | 15063 | √ | |
| Windows 7 | SP1 | √ | ||
| Windows 8.1 | ||||
| Windows RT 8.1 | ||||
| Windows Server 2008 | SP2 | |||
| Windows Server 2008 | R2 | SP1 | ||
| Windows Server 2012 | ||||
| Windows Server 2012 | R2 | |||
| Windows Server 2016 |