CVE-2016-7214: Infoleak
The kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allow local users to bypass the ASLR protection mechanism via a crafted application, aka "Win32k Information Disclosure Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-7214?
CVE-2016-7214 has a high severity rating due to its potential to allow local users to bypass security mechanisms.
How do I fix CVE-2016-7214?
To mitigate CVE-2016-7214, apply the security updates provided by Microsoft for the affected versions of Windows.
Which versions of Windows are affected by CVE-2016-7214?
CVE-2016-7214 affects Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows 10 and several Windows Server versions.
What is the impact of exploiting CVE-2016-7214?
Exploitation of CVE-2016-7214 may allow attackers to execute arbitrary code with elevated privileges.
Is there a workaround for CVE-2016-7214?
There are no known reliable workarounds for CVE-2016-7214; applying the relevant updates is essential.