IT

Tracker / CVE-2011-1229

CVE-2011-1229

High 7.2

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other "Vulnerability Type 2" CVEs listed in MS11-034, aka "Win32k Null Pointer De-reference Vulnerability."

Affected products and versions

avaya agent_access
avaya aura_conferencing_standard_edition
avaya basic_call_management_system_reporting_desktop
avaya call_management_server_supervisor
avaya callpilot · 4.0.x → 5.0.x
avaya callvisor_asai_lan
avaya communication_server_1000_telephony_manager · 3.0.0 → 4.0.0
avaya computer_telephony
avaya contact_center_express
avaya customer_interaction_express
avaya enterprise_manager
avaya integrated_management
avaya interaction_center
avaya ip_agent
avaya ip_softphone
avaya meeting_exchange · 5.0.0 → 5.2.0
avaya messaging_application_server · 4.0.x → 5.2.x
avaya network_reporting
avaya octelaccess_server
avaya octeldesigner
avaya operational_analyst
avaya outbound_contact_management
avaya speech_access
avaya unified_communication_center
avaya unified_messenger
avaya visual_messenger
avaya visual_vector_client
avaya vpnmanager_console
avaya web_messenger
microsoft windows_2003_server
microsoft windows_7
microsoft windows_server_2003
microsoft windows_server_2008
microsoft windows_vista
microsoft windows_xp

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References