Microsoft Windows Kernel Multiple Vulnerabilities
Last Update Date:
14 Jul 2016
Release Date:
13 Jul 2016
3652
Views
RISK: Medium Risk
TYPE: Operating Systems - Windows OS
- Windows File System Security Feature Bypass
A security feature bypass vulnerability exists in the Windows kernel that could allow an attacker to exploit time of check time of use (TOCTOU) issues in file path-based checks from a low integrity application. An attacker who successfully exploited this vulnerability could potentially modify files outside of a low integrity level application. - Windows Kernel Information Disclosure Vulnerability
An information disclosure vulnerability exists in Microsoft Windows when the Windows kernel fails to properly handle certain page fault system calls. An authenticated attacker who successfully exploited this vulnerability could disclose information from one process to another.
Impact
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- Microsoft Windows 8.1
- Microsoft Windows Server 2012 and Windows Server 2012 R2
- Microsoft Windows RT 8.1
- Microsoft Windows 10
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/en-us/library/security/MS16-092
Vulnerability Identifier
Source
Related Link
Share with