ENISA EUVD · EUVD-2018-1629Known-exploited evidence recordedA remote code execution vulnerability exists in "Microsoft COM for Windows" when it fails to properly handle serialized objects, aka "Microsoft COM for Windows Remote Code Execution Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
Official EUVD record ↗Canadian Centre for Cyber Security · English · AV18-075Microsoft security updatesNumber: AV18-075
Date: 8 May 2018
Purpose
The purpose of this advisory is to bring attention to recently released Microsoft Security Updates.
Assessment
This advisory covers multiple support package deployments addressing multiple vulnerabilities in various Microsoft products.
Products Affected:
-Internet Explorer
-Microsoft Edge
-Microsoft Windows
-Microsoft Office and Microsoft Office Services and Web Apps
-ChakraCore
-Adobe Flash Player
-.NET Framework
-Microsoft Exchange Server
-Windows Host Compute Service Shim
CVE References: ADV180008, CVE-2018-0765, CVE-2018-0824, CVE-2018-0854, CVE-2018-0943, CVE-2018-0945, CVE-2018-0946, CVE-2018-0951, CVE-2018-0953, CVE-2018-0954, CVE-2018-0955, CVE-2018-0958, CVE-2018-0959, CVE-2018-0961, CVE-2018-1021, CVE-2018-1022, CVE-2018-1025, CVE-2018-1039, CVE-2018-8112, CVE-2018-8114, CVE-2018-8119, CVE-2018-8120, CVE-2018-8122, CVE-2018-8123, CVE-2018-8124, CVE-2018-8126, CVE-2018-8127, CVE-2018-8128, CVE-2018-8129, CVE-2018-8130, CVE-2018-8132, CVE-2018-8133, CVE-2018-8134, CVE-2018-8136, CVE-2018-8137, CVE-2018-8139, CVE-2018-8141, CVE-2018-8142, CVE-2018-8145, CVE-2018-8147, CVE-2018-8148, CVE-2018-8149, CVE-2018-8150, CVE-2018-8151, CVE-2018-8152, CVE-2018-8153, CVE
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-221Multiples vulnérabilités dans Microsoft Windowsre installation)
Windows Server, version 1709 (Server Core Installation)
Windows Server, version 1803 (Server Core Installation)
Résumé
De multiples vulnérabilités ont été corrigées dans Microsoft Windows . Elles permettent à un attaquant
de provoquer une divulgation d'informations, une élévation de
privilèges, un contournement de la fonctionnalité de sécurité et une
exécution de code à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Microsoft du 08 mai 2018
https://portal.msrc.microsoft.com/fr-FR/security-guidance
Référence CVE CVE-2018-0824
https://www.cve.org/CVERecord?id=CVE-2018-0824
Référence CVE CVE-2018-0854
https://www.cve.org/CVERecord?id=CVE-2018-0854
Référence CVE CVE-2018-0958
https://www.cve.org/CVERecord?id=CVE-2018-0958
Référence CVE CVE-2018-0959
https://www.cve.org/CVERecord?id=CVE-2018-0959
Référence CVE CVE-2018-0961
https://www.cve.org/CVERecord?id=CVE-2018-0961
Référence CVE CVE-2018-1035
https://www.cve.org/CVERecord?id=CVE-2018-1035
Référence CVE CVE-2018-8115
https://www.cve.org/CVERecord?id=CVE-2018-8115
Référence CVE CVE-2018-8120
https://www.cve.org/CVERecord?id=CVE-2018-8120
Référence CVE CVE-2018-8124
https://www.cve.org/CVERecord?id=CVE-2018-8124
Ré
Official advisory ↗NBSZ-NKI · Hungarian · cve-2018-0824CVE-2018-0824Magas
Official advisory ↗JVN iPedia · Japanese · JVNDB-2018-004256複数の Microsoft Windows 製品におけるリモートでコードを実行される脆弱性複数の Microsoft Windows 製品には、シリアル化されたオブジェクトの適切な処理に失敗した場合、リモートでコードを実行される脆弱性が存在します。 ベンダは、本脆弱性を「Microsoft COM for Windows のリモートでコードが実行される脆弱性」として公開しています。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-6253美 CISA 발표 주요 Exploit 정보공유(Update. 2024-08-05)Microsoft COM for Windows contains a deserialization of untrusted data vulnerability that allows for privilege escalation and remote code execution via a specially crafted file or script.
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4871MS 5월 보안 위협에 따른 정기 보안 업데이트 권고- 원격코드실행 취약점(CVE-2018-0824,CVE-2018-0943,CVE-2018-0945,CVE-2018-0946,CVE-2018-0951,CVE-2018-0953,CVE-2018-0954,CVE-2018-0959,CVE-2018-0961,CVE-2018-1022,CVE-2018-8128,CVE-2018-8130,CVE-2018-8133,CVE-2018-8136,CVE-2018-8137,CVE-2018-8139,CVE-2018-8174,CVE-2018-8178,CVE-2018-8179)
Official advisory ↗