CVE-2015-6109Sensitive Information Exposure in Microsoft Windows 10

Severity
2.1LOWNVD
EPSS
2.1%
top 15.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11
Latest updateMay 14

Description

The kernel in Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to bypass the KASLR protection mechanism, and consequently discover a driver base address, via a crafted application, aka "Windows Kernel Memory Information Disclosure Vulnerability."

CVSS vector

AV:L/AC:L/C:P/I:N/A:NExploitability: 3.9 | Impact: 2.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

1
GHSA
GHSA-w944-hxcg-xxww: The kernel in Microsoft Windows 82022-05-14

🕵️Threat Intelligence

3
Talos
Microsoft Patch Tuesday - November 20152015-11-10
Talos
Microsoft Patch Tuesday - November 20152015-11-10
Zscaler
Zscaler detects IE & MS Office Vulnerabilities | 11-10-2015