CVE-2015-2529: Low severity windows 10 vulnerability
Published Sep 9, 2015
·Updated
The kernel in Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 allows local users to bypass the ASLR protection mechanism via a crafted application, aka "Kernel ASLR Bypass Vulnerability."
Affected Software
4 affected components
Microsoft Windows 10
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2012=r2
Remediation
Event History
Sep 9, 2015
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2529?
CVE-2015-2529 is classified as a critical vulnerability that allows local users to bypass ASLR protections.
2
How do I fix CVE-2015-2529?
The best way to fix CVE-2015-2529 is to apply the security updates provided by Microsoft.
3
Which versions of Windows are affected by CVE-2015-2529?
CVE-2015-2529 affects Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10.
4
Can CVE-2015-2529 be exploited remotely?
CVE-2015-2529 requires local access to the system for exploitation, making it less critical than remote vulnerabilities.
5
What protections are affected by CVE-2015-2529?
CVE-2015-2529 allows local users to bypass the Address Space Layout Randomization (ASLR) protection mechanism.