CVE-2015-1643: High severity microsoft windows 7 vulnerability
Microsoft Windows Server 2003 R2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "NtCreateTransactionManager Type Confusion Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1643?
CVE-2015-1643 has a critical severity rating, allowing local users to escalate privileges.
How do I fix CVE-2015-1643?
To fix CVE-2015-1643, apply the Microsoft security updates available for the affected versions of Windows.
Which operating systems are affected by CVE-2015-1643?
CVE-2015-1643 affects Microsoft Windows Server 2003 R2, Windows Vista SP2, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012, among others.
Can CVE-2015-1643 be exploited remotely?
CVE-2015-1643 requires local access to the affected systems for exploitation.
What are the consequences of CVE-2015-1643 if exploited?
Exploiting CVE-2015-1643 could allow an attacker to gain elevated privileges on the affected system.