PT-2012-3611 · Microsoft · Win32K.Sys+2
Publicado
2012-06-12
·
Atualizado
2018-10-12
·
CVE-2012-1868
CVSS v2.0
6.9
Média
| Vetor | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows XP SP3
Description
The issue is related to a race condition in the thread-creation implementation in the Windows kernel, specifically in win32k.sys. This allows local users to gain privileges via a crafted application. An elevation of privilege vulnerability exists due to the way the kernel handles specific thread creation attempts, potentially enabling an attacker to run arbitrary code in kernel mode. This could lead to the installation of programs, viewing, changing, or deleting data, or creating new accounts with full administrative rights.
Recommendations
For Microsoft Windows XP SP3, consider applying security patches or updates that address the kernel-mode drivers issue, specifically the win32k.sys race condition, to prevent privilege escalation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Race Condition
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Windows
Windows Xp
Win32K.Sys