First published: Wed Jan 13 2016(Updated: )
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 mishandle DLL loading, which allows local users to gain privileges via a crafted application, aka "MAPI DLL Loading Elevation of Privilege Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows 7 | =sp2 | |
Microsoft Windows Server | =sp2 | |
Microsoft Windows Server | =r2-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0020 has a severity rating of important, indicating a significant potential for local privilege escalation.
To fix CVE-2016-0020, apply the security updates provided by Microsoft for your affected Windows version.
CVE-2016-0020 affects users of Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1.
CVE-2016-0020 can be exploited by local users through crafted applications that mismanage DLL loading.
The vulnerable platforms for CVE-2016-0020 include Windows Vista, Windows Server 2008, and Windows 7.