CVE-2015-1674 EXPLOIT
4.6
MEDIUM · CVSS 2.0 · EPSS 3.3% (pctl 88)
Patch early
A public exploit exists.
Description
The kernel in Microsoft Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 does not properly validate an unspecified address, which allows local users to bypass the KASLR protection mechanism, and consequently discover the cng.sys base address, via a crafted application, aka "Windows Kernel Security Feature Bypass Vulnerability."
Scoring
| CVSS | 4.6 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 3.33% — more likely to be exploited than 88% of all CVEs |
| Weakness | CWE-254 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2015-05-13 |
| Last modified | 2026-06-17 |
Affected (5)
| Vendor | Product |
|---|---|
| microsoft | windows 8 |
| microsoft | windows 8.1 |
| microsoft | windows rt |
| microsoft | windows rt 8.1 |
| microsoft | windows server 2012 |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows - 'CNG.SYS' Kernel Security Feature Bypass (MS15-052) | 2015-05-18 |
References
- http://www.securityfocus.com/bid/74488
- http://www.securitytracker.com/id/1032292
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-052
- https://www.exploit-db.com/exploits/37052/
- http://www.securityfocus.com/bid/74488
- http://www.securitytracker.com/id/1032292
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-052
- https://www.exploit-db.com/exploits/37052/
→ the Explorer · watch your stack · NVD