CVE-2011-1886: Null Pointer Dereference
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 does not properly validate the arguments to functions, which allows local users to read arbitrary data from kernel memory via a crafted application that triggers a NULL pointer dereference, aka "Win32k Incorrect Parameter Validation Allows Information Disclosure Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1886?
CVE-2011-1886 has a moderate severity rating due to its potential to allow local users to read kernel memory.
How do I fix CVE-2011-1886?
To fix CVE-2011-1886, apply the latest security updates and patches provided by Microsoft for Windows XP SP3.
Who is affected by CVE-2011-1886?
CVE-2011-1886 affects local users of Microsoft Windows XP Service Pack 3.
What are the potential impacts of CVE-2011-1886?
The potential impacts of CVE-2011-1886 include unauthorized access to sensitive kernel memory data.
Can CVE-2011-1886 be exploited remotely?
CVE-2011-1886 cannot be exploited remotely; it requires local access to the vulnerable system.