peter bassill · operator
$ cve CVE-2015-1674 JSON

CVE-2015-1674 EXPLOIT

4.6
MEDIUM · CVSS 2.0 · EPSS 3.3% (pctl 88)

Patch early

A public exploit exists.

Description

The kernel in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly validate an unspecified address, which allows local users to bypass the KASLR protection mechanism, and consequently discover the cng.sys base address, via a crafted application, aka "Windows Kernel Security Feature Bypass Vulnerability."

Scoring

CVSS4.6 (MEDIUM, v2.0)
VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
EPSS3.33% — more likely to be exploited than 88% of all CVEs
WeaknessCWE-254
On CISA KEVno
Public exploityes
Published2015-05-13
Last modified2026-06-17

Affected (5)

VendorProduct
microsoftwindows 8
microsoftwindows 8.1
microsoftwindows rt
microsoftwindows rt 8.1
microsoftwindows server 2012

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD