First published: Tue Jun 12 2012(Updated: )
Race condition in the thread-creation implementation in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 allows local users to gain privileges via a crafted application, aka "Win32k.sys Race Condition Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows XP | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-1868 is classified as a critical vulnerability due to its potential to allow local users to gain elevated privileges.
To address CVE-2012-1868, it is recommended to apply the latest security patches provided by Microsoft for Windows XP SP3.
CVE-2012-1868 specifically affects Microsoft Windows XP with Service Pack 3.
CVE-2012-1868 is a local privilege escalation vulnerability, meaning it cannot be exploited remotely.
CVE-2012-1868 can be exploited through a crafted application that takes advantage of the race condition in win32k.sys.