Vulnerability in Windows Client/Server Run-time Subsystem Could Allow Elevation of Privilege - MS12-003ID: oval:org.secpod.oval:def:3712 | Date: (C)2012-01-11 (M)2023-12-14 |
Class: PATCH | Family: windows |
The host is installed is missing an important security update according to Microsoft security bulletin, ms12-003. The update is required to fix a privilege escalation vulnerability. A flaw is present in the application, which fails to handle the way that the CSRSS processes a sequence of specially crafted Unicode characters. Successful exploitation allows local users to gain privileges via a crafted application.
Platform: |
Microsoft Windows XP |
Microsoft Windows Vista |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |