Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7235-qj5h-hxgx

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly handle use of the paged kernel pool for allocation of uninitialized memory, which allows local users to obtain sensitive information about kernel addresses via a crafted application, aka "Windows Kernel Pool Allocation Vulnerability."

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly handle use of the paged kernel pool for allocation of uninitialized memory, which allows local users to obtain sensitive information about kernel addresses via a crafted application, aka "Windows Kernel Pool Allocation Vulnerability."

EPSS

Процентиль: 84%
0.02368
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
около 11 лет назад

The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly handle use of the paged kernel pool for allocation of uninitialized memory, which allows local users to obtain sensitive information about kernel addresses via a crafted application, aka "Windows Kernel Pool Allocation Vulnerability."

fstec
около 11 лет назад

Уязвимость операционной системы Windows, позволяющая злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 84%
0.02368
Низкий

Дефекты

CWE-119