Executive brief
A memory corruption vulnerability in the Microsoft Win32k kernel-mode driver allows local attackers to elevate privileges via a crafted application. This flaw is distinct from other 2015 Win32k vulnerabilities and has been observed being exploited in the wild.
Affected products
- Microsoft Windows Vista SP2
- Microsoft Windows Server 2008 SP2, R2 SP1
- Microsoft Windows 7 SP1
- Microsoft Windows 8 Gold
- Microsoft Windows 8.1 Gold
- Microsoft Windows Server 2012 Gold, R2
- Microsoft Windows RT Gold, 8.1
- Microsoft Windows 10 Gold
Timeline
- 2015-09-08: patched: Microsoft released security bulletin MS15-097 to address the issue.
- 2022-03-15: kev added: CISA added this vulnerability to the Known Exploited Vulnerabilities (KEV) catalog.