#VU5576 Security bypass in Windows and Windows Server - CVE-2015-2529
Published: February 1, 2017 / Updated: February 21, 2017
Windows
Windows Server
Microsoft
Description
The weakness exists due to improper initialization of a memory address in the Windows kernel. A local attacker can execute a specially crafted program, bypass Kernel Address Space Layout Randomization (KASLR) and obtain the base address of the kernel driver.
Successful exploitation of the vulnerability may result in information disclosure on the vulnerable system.