CVE-2017-0245: Microsoft Windows 7
Medium severity, CVSS 4.7. EPSS: 7.7% chance of exploitation in the next 30 days.
The kernel-mode drivers in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1 and Windows Server 2012 Gold allow a local authenticated attacker to execute a specially crafted application to obtain kernel information, aka "Win32k Information Disclosure Vulnerability."
Affected products
- Microsoft Windows 7: any version
- Microsoft Windows Server 2008: any version; version r2 only
- Microsoft Windows Server 2012: affected versions not specified
Published 2017-05-12. Last modified 2026-06-17.