AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2017-11849

MEDIUM · CVSS 4.7 EPSS 2.18%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-11-15 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2017-11849
Severity
MEDIUM
CVSS
4.7
EPSS
2.18%
Windows

Original Filing — NVD Description

Windows kernel in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allows an attacker to log in and run a specially crafted application due to the Windows kernel improperly initializing a memory address, aka "Windows Kernel Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-11842, CVE-2017-11851, and CVE-2017-11853.