CVE-2018-8589

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*

History

28 Oct 2025, 13:48

Type Values Removed Values Added
References () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8589 - () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8589 - US Government Resource

22 Oct 2025, 00:16

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8589 -

21 Oct 2025, 20:17

Type Values Removed Values Added
References
  • {'url': 'https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8589', 'source': '134c704f-9b21-4f2e-91b3-4a467353bcc0'}

21 Oct 2025, 19:17

Type Values Removed Values Added
References
  • () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8589 -
References () http://www.securityfocus.com/bid/105796 - Third Party Advisory, VDB Entry, Broken Link () http://www.securityfocus.com/bid/105796 - Broken Link, Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1042140 - Third Party Advisory, VDB Entry, Broken Link () http://www.securitytracker.com/id/1042140 - Broken Link, Third Party Advisory, VDB Entry

04 Apr 2025, 15:32

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/105796 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/105796 - Third Party Advisory, VDB Entry, Broken Link
References () http://www.securitytracker.com/id/1042140 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1042140 - Third Party Advisory, VDB Entry, Broken Link

21 Nov 2024, 04:14

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/105796 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/105796 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1042140 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1042140 - Third Party Advisory, VDB Entry
References () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8589 - Patch, Vendor Advisory () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8589 - Patch, Vendor Advisory

Information

Published : 2018-11-14 01:29

Updated : 2025-10-28 13:48


NVD link : CVE-2018-8589

Mitre link : CVE-2018-8589

CVE.ORG link : CVE-2018-8589


JSON object : View

Products Affected

microsoft

  • windows_7
  • windows_server_2008