Threat intelligence report · CISA KEV

CVE-2013-3660: Microsoft Win32k Privilege Escalation Vulnerability

The EPATHOBJ::pprFlattenRec function in win32k.sys in the kernel-mode drivers in Microsoft does not properly initialize a pointer for the next object in a certain list, which allows local users to gain privileges. Required action: Apply updates per vendor instructions.

· high severity · unattributed attribution

Evidence and provenance

Original source
CISA KEV report ↗
Published
2022-03-28T00:00:00Z
Confidence basis
No actor match
Record ID
42a48ee0b39fdbc9fd65

Vulnerabilities

CVE-2013-3660

Use and citation

Verify the original report before making operational decisions. Cite this permanent page together with the original source, publication date, confidence level, and review status.