CVE-2012-1865 Information

Description

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3 Windows Server 2003 SP2 Windows Vista SP2 Windows Server 2008 SP2 R2 and R2 SP1 and Windows 7 Gold and SP1 does not properly handle user-mode input passed to kernel mode for driver objects which allows local users to gain privileges via a crafted application aka \String Atom Class Name Handling Vulnerability\ a different vulnerability than CVE-2012-1864.

Reference

http://www.us-cert.gov/cas/techalerts/TA12-164A.html https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-041 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A15649

Share on: