Description
Multiple vulnerabilities were found in Microsoft Windows. Malicious users can exploit these vulnerabilities to execute arbitrary code, gain privileges, obtain sensitive information, bypass security restrictions.
Below is a complete list of vulnerabilities:
- A remote code execution vulnerability in Jet Database Engine can be exploited remotely via specially crafted file to execute arbitrary code.
- An elevation of privilege vulnerability in Windows Error Reporting can be exploited remotely to gain privileges.
- An information disclosure vulnerability in Windows GDI can be exploited remotely via specially crafted document to obtain sensitive information.
- An elevation of privilege vulnerability in Unified Write Filter can be exploited remotely to gain privileges.
- An elevation of privilege vulnerability in Windows can be exploited remotely via specially crafted application to gain privileges.
- A remote code execution vulnerability in GDI+ can be exploited remotely via specially crafted website to execute arbitrary code.
- An elevation of privilege vulnerability in Diagnostic Hub Standard Collector, Visual Studio Standard Collector can be exploited remotely via specially crafted application to gain privileges.
- A remote code execution vulnerability in Windows OLE can be exploited remotely via specially crafted file to execute arbitrary code.
- An information disclosure vulnerability in Windows Hyper-V can be exploited remotely via specially crafted application to obtain sensitive information.
- A security feature bypass vulnerability in Windows Defender Application Control can be exploited remotely to bypass security restrictions.
- An elevation of privilege vulnerability in Win32k can be exploited remotely via specially crafted application to gain privileges.
- A remote code execution vulnerability in Windows DHCP Server can be exploited remotely via specially crafted packets to execute arbitrary code.
- An elevation of privilege vulnerability in Windows Storage Service can be exploited remotely via specially crafted application to gain privileges.
- An elevation of privilege vulnerability in Windows can be exploited remotely to gain privileges.
- An elevation of privilege vulnerability in Windows Kernel can be exploited remotely via specially crafted application to gain privileges.
- An elevation of privilege vulnerability in Windows NDIS can be exploited remotely via specially crafted application to gain privileges.
Original advisories
- CVE-2019-0889
- CVE-2019-0863
- CVE-2019-0758
- CVE-2019-0942
- CVE-2019-0891
- CVE-2019-0936
- CVE-2019-0900
- CVE-2019-0961
- CVE-2019-0903
- CVE-2019-0727
- CVE-2019-0885
- CVE-2019-0894
- CVE-2019-0886
- CVE-2019-0733
- CVE-2019-0893
- CVE-2019-0902
- CVE-2019-0896
- CVE-2019-0882
- CVE-2019-0892
- CVE-2019-0897
- CVE-2019-0725
- CVE-2019-0901
- CVE-2019-0931
- CVE-2019-0898
- CVE-2019-0734
- CVE-2019-0890
- CVE-2019-0881
- CVE-2019-0707
- CVE-2019-0899
- ADV190013
Exploitation
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
Related products
- Microsoft-Visual-Studio
- Microsoft-Windows
- Microsoft-Windows-Server
- Microsoft-Windows-Server-2012
- Microsoft-Windows-8
- Microsoft-Windows-7
- Microsoft-Windows-Server-2008
- Windows-RT
- Microsoft-Windows-10
CVE list
- CVE-2019-0895 critical
- CVE-2019-0889 critical
- CVE-2019-0863 critical
- CVE-2019-0758 high
- CVE-2019-0942 high
- CVE-2019-0891 critical
- CVE-2019-0936 critical
- CVE-2019-0900 critical
- CVE-2019-0961 high
- CVE-2019-0903 critical
- CVE-2019-0727 critical
- CVE-2019-0885 critical
- CVE-2019-0894 critical
- CVE-2019-0886 high
- CVE-2019-0733 high
- CVE-2019-0893 critical
- CVE-2019-0902 critical
- CVE-2019-0896 critical
- CVE-2019-0882 high
- CVE-2019-0892 critical
- CVE-2019-0897 critical
- CVE-2019-0725 critical
- CVE-2019-0901 critical
- CVE-2019-0931 high
- CVE-2019-0898 critical
- CVE-2019-0734 critical
- CVE-2019-0890 critical
- CVE-2019-0881 critical
- CVE-2019-0707 high
- CVE-2019-0899 critical
KB list
- 4499179
- 4499181
- 4499158
- 4499171
- 4499165
- 4499167
- 4494441
- 4497936
- 4499151
- 4494440
- 4499154
- 4516066
- 4516068
- 4516064
- 4515384
- 4516044
- 4512578
- 4516058
- 4516067
- 4520011
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!