CVE-2016-7271

HIGH

Windows 10 and Windows Server 2016 - Secure Kernel Mode Elevation of Privilege via VTL Protection Bypass

Title source: llm
STIX 2.1

Description

The Secure Kernel Mode implementation in Microsoft Windows 10 Gold, 1511, and 1607 and Windows Server 2016 allows local users to bypass the virtual trust level (VTL) protection mechanism via a crafted application, aka "Secure Kernel Mode Elevation of Privilege Vulnerability."

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1037451
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/94734

Scores

CVSS v3 7.8
EPSS 0.0137
EPSS Percentile 69.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-264
Status published
Products (4)
microsoft/windows_10
microsoft/windows_10 1511
microsoft/windows_10 1607
microsoft/windows_server_2016
Published Dec 20, 2016
Tracked Since Feb 18, 2026