SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2016-1715

The swin.sys kernel driver in McAfee Application Control (MAC) 6.1.0 before build 706, 6.1.1 before build 404, 6.1.2 before build 449, 6.1.3 before build 441, and 6.2.0 before build 505 on 32-bit Windows platforms allows local users to cause a denial of…

MEDIUM 6.6EPSS 2.31%

Does this matter?

Lower severity and a low EPSS score (2.31%). Track it; it rarely justifies an emergency change on its own.

Description

The swin.sys kernel driver in McAfee Application Control (MAC) 6.1.0 before build 706, 6.1.1 before build 404, 6.1.2 before build 449, 6.1.3 before build 441, and 6.2.0 before build 505 on 32-bit Windows platforms allows local users to cause a denial of service (memory corruption and system crash) or gain privileges via a 768 syscall, which triggers a zero to be written to an arbitrary kernel memory location.

CVSS 3.0
6.6 MEDIUMCVSS:3.0/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:H
EPSS
2.31% probability · 82th percentile
CISA KEV
Not listed
Weakness
CWE-189
Affected
microsoft/windows · mcafee/application control
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.