PT-2013-3087 · Microsoft · Windows Rt+7

Gynvael Coldwind

+1

·

Published

2013-05-14

·

Updated

2023-12-07

·

CVE-2013-1332

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows Vista SP2 Microsoft Windows Server 2008 SP2 and R2 SP1 Microsoft Windows 7 SP1 Microsoft Windows 8 Microsoft Windows Server 2012 Microsoft Windows RT
Description The issue arises from the improper handling of objects in memory by the DirectX graphics kernel subsystem (dxgkrnl.sys) in the kernel-mode drivers. This allows local users to gain privileges via a crafted application.
Recommendations For Microsoft Windows Vista SP2, update the DirectX graphics kernel subsystem to a patched version. For Microsoft Windows Server 2008 SP2 and R2 SP1, update the DirectX graphics kernel subsystem to a patched version. For Microsoft Windows 7 SP1, update the DirectX graphics kernel subsystem to a patched version. For Microsoft Windows 8, update the DirectX graphics kernel subsystem to a patched version. For Microsoft Windows Server 2012, update the DirectX graphics kernel subsystem to a patched version. For Microsoft Windows RT, update the DirectX graphics kernel subsystem to a patched version.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2013-1332

Affected Products

Directx
Windows
Windows 7
Windows 8
Windows Rt
Windows Server 2008
Windows Server 2012
Windows Vista