Microsoft Windows CVE-2015-0016 Remote Privilege Escalation Vulnerability
BID:71965
Info
Microsoft Windows CVE-2015-0016 Remote Privilege Escalation Vulnerability
| Bugtraq ID: | 71965 |
| Class: | Unknown |
| CVE: |
CVE-2015-0016 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 13 2015 12:00AM |
| Updated: | Oct 05 2017 04:01PM |
| Credit: | Threat Intel of Symantec |
| Vulnerable: |
Microsoft Windows Server 2012 R2 0 Microsoft Windows Server 2012 0 Microsoft Windows Server 2008 R2 Itanium SP1 Microsoft Windows Server 2008 R2 for x64-based Systems SP1 Microsoft Windows RT 8.1 Microsoft Windows RT 0 Microsoft Windows 8.1 for 64-bit Systems 0 Microsoft Windows 8.1 for 32-bit Systems 0 Microsoft Windows 8 for 64-bit Systems 0 Microsoft Windows 8 for 32-bit Systems 0 Microsoft Windows 7 for x64-based Systems SP1 Microsoft Windows 7 for 32-bit Systems SP1 Avaya Meeting Exchange - Webportal 6.2 Avaya Meeting Exchange - Webportal 6.0 Avaya Meeting Exchange - Webportal 5.2.1 Avaya Meeting Exchange - Webportal 5.2 Avaya Meeting Exchange - Webportal 5.0.1 Avaya Meeting Exchange - Webportal 5.0 Avaya Meeting Exchange - Web Conferencing Server 6.2 Avaya Meeting Exchange - Web Conferencing Server 6.0 Avaya Meeting Exchange - Web Conferencing Server 5.2.1 Avaya Meeting Exchange - Web Conferencing Server 5.2 Avaya Meeting Exchange - Web Conferencing Server 5.0.1 Avaya Meeting Exchange - Web Conferencing Server 5.0 Avaya Meeting Exchange - Streaming Server 6.2 Avaya Meeting Exchange - Streaming Server 6.0 Avaya Meeting Exchange - Streaming Server 5.2.1 Avaya Meeting Exchange - Streaming Server 5.2 Avaya Meeting Exchange - Streaming Server 5.0.1 Avaya Meeting Exchange - Streaming Server 5.0 Avaya Meeting Exchange - Recording Server 6.2 Avaya Meeting Exchange - Recording Server 6.0 Avaya Meeting Exchange - Recording Server 5.2.1 Avaya Meeting Exchange - Recording Server 5.2 Avaya Meeting Exchange - Recording Server 5.0.1 Avaya Meeting Exchange - Recording Server 5.0 Avaya Meeting Exchange - Client Registration Server 6.2 Avaya Meeting Exchange - Client Registration Server 6.0 Avaya Meeting Exchange - Client Registration Server 5.2.1 Avaya Meeting Exchange - Client Registration Server 5.2 Avaya Meeting Exchange - Client Registration Server 5.0.1 Avaya Meeting Exchange - Client Registration Server 5.0 Avaya Aura Conferencing Standard Edition 6.0 |
| Not Vulnerable: | |
Discussion
Microsoft Windows CVE-2015-0016 Remote Privilege Escalation Vulnerability
Microsoft Windows is prone to a remote privilege-escalation vulnerability.
An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges.
Microsoft Windows is prone to a remote privilege-escalation vulnerability.
An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges.
Solution / Fix
Microsoft Windows CVE-2015-0016 Remote Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Microsoft Windows 8 for 32-bit Systems 0
Microsoft Windows 7 for 32-bit Systems SP1
Microsoft Windows 7 for x64-based Systems SP1
Microsoft Windows 8.1 for 32-bit Systems 0
Microsoft Windows Server 2008 R2 for x64-based Systems SP1
Microsoft Windows Server 2012 0
Microsoft Windows Server 2012 R2 0
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Microsoft Windows 8 for 32-bit Systems 0
-
Microsoft Security Update for Windows 8 (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=7F9E5745-891C -47BD-BD8C-53FCB3C04A6A
Microsoft Windows 7 for 32-bit Systems SP1
-
Microsoft Security Update for Windows 7 (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=38FFFC8B-AD0D -442B-B11A-586802F9E7D9 -
Microsoft Security Update for Windows 7 (KB3020387)
http://www.microsoft.com/downloads/details.aspx?familyid=4281F207-5005 -4F49-AAE3-E88EBE944140 -
Microsoft Security Update for Windows 7 (KB3020388)
http://www.microsoft.com/downloads/details.aspx?familyid=7EEF1C29-F2FC -434E-A7A6-929BBD70C5AE
Microsoft Windows 7 for x64-based Systems SP1
-
Microsoft Security Update for Windows 7 for x64-based Systems (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=E1757205-9A29 -4E47-9072-0A30964A4662 -
Microsoft Security Update for Windows 7 for x64-based Systems (KB3020387)
http://www.microsoft.com/downloads/details.aspx?familyid=9F3EABF6-404E -4FF1-BE03-FFCD172DE877 -
Microsoft Security Update for Windows 7 for x64-based Systems (KB3020388)
http://www.microsoft.com/downloads/details.aspx?familyid=14673699-7C76 -45BC-88ED-278B8DD96882
Microsoft Windows 8.1 for 32-bit Systems 0
-
Microsoft Security Update for Windows 8.1 (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=9A5C4CBB-AAC0 -49B4-9394-D68A30E33B62
Microsoft Windows Server 2008 R2 for x64-based Systems SP1
-
Microsoft Security Update for Windows Server 2008 R2 x64 Edition (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=5E8A333D-ADFB -43CC-BA4E-0E6919AD0DF2 -
Microsoft Security Update for Windows Server 2008 R2 x64 Edition (KB3020387)
http://www.microsoft.com/downloads/details.aspx?familyid=028FBAFC-5C27 -4BFD-8984-DBC134694DE2 -
Microsoft Security Update for Windows Server 2008 R2 x64 Edition (KB3020388)
http://www.microsoft.com/downloads/details.aspx?familyid=39936B9C-7CAB -4C58-9EA8-B7BEC9142F10
Microsoft Windows Server 2012 0
-
Microsoft Security Update for Windows Server 2012 (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=B639A8DD-EC3A -4D7C-9394-C67392D3A9F2
Microsoft Windows Server 2012 R2 0
-
Microsoft Security Update for Windows Server 2012 R2 (KB3019978)
http://www.microsoft.com/downloads/details.aspx?familyid=E88D6D1D-46E0 -4C1B-BB6D-657D26398BFD
References
Microsoft Windows CVE-2015-0016 Remote Privilege Escalation Vulnerability
References:
References:
- Microsoft Homepage (Microsoft)
- Microsoft Security Bulletin MS15-004 (Microsoft)
- MS15-004 Vulnerability in Windows Components Could Allow Elevation of Privilege (Avaya)