7.2
CVSSv2

CVE-2012-0181

Published: 09/05/2012 Updated: 26/02/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, and Windows 8 Consumer Preview does not properly manage Keyboard Layout files, which allows local users to gain privileges via a crafted application, aka "Keyboard Layout File Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2008 r2

microsoft windows 7

microsoft windows server 2008 -

microsoft windows server 2003

microsoft windows vista

microsoft windows xp

Exploits

=========== Description =========== Windows XP keyboard layouts pool corruption 0day PoC, post-MS12-034 Vulnerability exists in the function win32k!ReadLayoutFile(), that parses keyboard layout files data Possible attack vector -- local privileges escalation Similar vuln (CVE-2012-0183) was patched recently, but I wonder, ...