Junglewise Threat Intelligence

CVE-2015-2546: Microsoft Win32k Memory Corruption Vulnerability

CVE-2015-2546 · Severity: critical · CVSS 8.2 · Exploited in the wild · Published 2022-03-15

Technologies: Microsoft Windows Server 2008, Microsoft Windows Vista, Microsoft Windows 8.1, Microsoft Windows Server 2012, Microsoft Win32K, Microsoft Windows 7, Microsoft Windows 10. Vendors: Microsoft.

Executive brief

A memory corruption vulnerability in the Microsoft Win32k kernel-mode driver allows local attackers to elevate privileges via a crafted application. This flaw is distinct from other 2015 Win32k vulnerabilities and has been observed being exploited in the wild.

Affected products

  • Microsoft Windows Vista SP2
  • Microsoft Windows Server 2008 SP2, R2 SP1
  • Microsoft Windows 7 SP1
  • Microsoft Windows 8 Gold
  • Microsoft Windows 8.1 Gold
  • Microsoft Windows Server 2012 Gold, R2
  • Microsoft Windows RT Gold, 8.1
  • Microsoft Windows 10 Gold

Timeline

  • 2015-09-08: patched: Microsoft released security bulletin MS15-097 to address the issue.
  • 2022-03-15: kev added: CISA added this vulnerability to the Known Exploited Vulnerabilities (KEV) catalog.

Related threats