CVE-2015-2550Microsoft Windows Server 2008 vulnerability

CWE-26411 documents6 sources
Severity
7.2HIGHNVD
OSV9.8
EPSS
2.2%
top 15.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 14
Latest updateMay 14

Description

The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Windows Elevation of Privilege Vulnerability."

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages2 packages

Ubuntulinux/linux_kernel< 3.13.0-85.129

Patches

🔴Vulnerability Details

3
GHSA
GHSA-jwhr-32r8-j54v: The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 82022-05-14
OSV
linux-lts-vivid vulnerabilities2016-04-06
OSV
linux vulnerabilities2016-04-06

🕵️Threat Intelligence

3
Talos
Microsoft Patch Tuesday - October 20152015-10-13
Talos
Microsoft Patch Tuesday - October 20152015-10-13
Zscaler
Zscaler detects IE &amp; MS Office Vulnerabilities | 10-13-2015

💬Community

4
Bugzilla
CVE-2015-7497 libxml2: Heap-based buffer overflow in xmlDictComputeFastQKey2015-11-13
Bugzilla
CVE-2015-7500 libxml2: Heap buffer overflow in xmlParseMisc2015-11-13
Bugzilla
libxml2: Multiple out-of-bounds reads in xmlDictComputeFastKey.isra.2 and xmlDictAddString.isra.O2015-11-13
Bugzilla
CVE-2015-5312 libxml2: CPU exhaustion when processing specially crafted XML input2015-10-30