CVE-2016-0099: Microsoft Windows Secondary Logon Service Privilege Escalation Vulnerability
The Secondary Logon Service in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 does not properly process request handles, which allows local users to gain privileges via a crafted application, aka "Secondary Logon Elevation of Privilege Vulnerability."
Other sources
A privilege escalation vulnerability exists in Microsoft Windows if the Windows Secondary Logon Service fails to properly manage request handles in memory. An attacker who successfully exploited this vulnerability could run arbitrary code as an administrator.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0099?
CVE-2016-0099 has a critical severity rating, indicating a high potential for exploitation.
How do I fix CVE-2016-0099?
To fix CVE-2016-0099, you should install the latest security update provided by Microsoft for the affected Windows versions.
Which systems are affected by CVE-2016-0099?
CVE-2016-0099 affects various Microsoft Windows systems, including Windows Vista, Windows 7, Windows 8.1, Windows 10, and Windows Server editions.
What attackers can achieve with CVE-2016-0099?
Exploiting CVE-2016-0099 allows local users to gain elevated privileges on the affected systems.
Is there a patch available for CVE-2016-0099?
Yes, Microsoft released patches addressing CVE-2016-0099 in their security updates.