Security bypass in Microsoft Windows and Windows Server - CVE-2015-2529
Published: February 1, 2017 / Updated: February 21, 2017
Vulnerability details
The weakness exists due to improper initialization of a memory address in the Windows kernel. A local attacker can execute a specially crafted program, bypass Kernel Address Space Layout Randomization (KASLR) and obtain the base address of the kernel driver.
Successful exploitation of the vulnerability may result in information disclosure on the vulnerable system.
Affected software
Windows Server