PT-2016-2742 · Microsoft · Windows

Published

2016-09-13

·

Updated

2018-10-12

·

CVE-2016-3355

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to the fixed version
Description The issue is related to the Graphics Device Interface (GDI) component in Microsoft Windows, which has insufficient access restrictions. This can be exploited by a local attacker using a specially crafted application to elevate their privileges.
Recommendations For Microsoft Windows versions prior to the fixed version, apply the necessary patch to resolve the issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-02144
CVE-2016-3355

Affected Products

Windows