CVE Vulnerabilities

CVE-2017-8574

Improper Preservation of Permissions

Published: Jul 11, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Graphics in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability when it fails to properly handle objects in memory, aka Microsoft Graphics Component Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2017-8573 and CVE-2017-8556.

Weakness

The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.

Affected Software

NameVendorStart VersionEnd Version
Windows_10Microsoft1607 (including)1607 (including)
Windows_10Microsoft1703 (including)1703 (including)
Windows_server_2016Microsoft**

References