CVE-2013-3902

Windows 7 SP1 - Use-After-Free in win32k.sys

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1 and Windows 7 SP1 on 64-bit platforms allows local users to gain privileges via a crafted application, aka "Win32k Use After Free Vulnerability."

References (1)

Core 1
Core References

Scores

EPSS 0.0204
EPSS Percentile 79.2%

Details

CWE
CWE-399
Status published
Products (1)
microsoft/windows_7 (2 CPE variants)
Published Dec 11, 2013
Tracked Since Feb 18, 2026