Windows Kernel Information Disclosure Vulnerability for Windows Vista for x64-based Systems (KB3198234)

Risk Information

Base Score
7.7
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
89.296%

CVE Information

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
21773

Patch Description
Security Update for Windows Vista for x64-based Systems (KB3198234)

References

http://blog.trendmicro.com/trendlabs-security-intelligence/one-bit-rule-system-analyzing-cve-2016-7255-exploit-wild/
http://packetstormsecurity.com/files/140468/Microsoft-Windows-Kernel-win32k.sys-NtSetWindowLongPtr-Privilege-Escalation.html
http://technet.microsoft.com/security/bulletin/MS16-135
http://www.securityfocus.com/bid/93991
http://www.securityfocus.com/bid/94000
http://www.securityfocus.com/bid/94004
http://www.securityfocus.com/bid/94063
http://www.securityfocus.com/bid/94064
http://www.securitytracker.com/id/1037251
http://www.zerodayinitiative.com/advisories/ZDI-16-592
http://www.zerodayinitiative.com/advisories/ZDI-16-594
https://github.com/mwrlabs/CVE-2016-7255
https://securingtomorrow.mcafee.com/mcafee-labs/digging-windows-kernel-privilege-escalation-vulnerability-cve-2016-7255/
https://security.googleblog.com/2016/10/disclosing-vulnerabilities-to-protect.html
https://www.exploit-db.com/exploits/40745/
https://www.exploit-db.com/exploits/40823/
https://www.exploit-db.com/exploits/41015/
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2016-7215
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2016-7255