VulnerabilityModified
CVE-2016-3256
Microsoft Windows 10 Gold and 1511 allows local users to bypass the Secure Kernel Mode protection mechanism and obtain sensitive information via a crafted application, aka "Windows Secure Kernel Mode Information Disclosure Vulnerability."
MEDIUM 5.0EPSS 4.90%
Does this matter?
Lower severity and a low EPSS score (4.90%). Track it; it rarely justifies an emergency change on its own.
Description
Microsoft Windows 10 Gold and 1511 allows local users to bypass the Secure Kernel Mode protection mechanism and obtain sensitive information via a crafted application, aka "Windows Secure Kernel Mode Information Disclosure Vulnerability."
- CVSS 3.0
- 5.0 MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
- EPSS
- 4.90% probability · 92th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- microsoft/windows 10
- Source
- secure@microsoft.com
References
- http://www.securityfocus.com/bid/91590
- http://www.securitytracker.com/id/1036287
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-089
- http://www.securityfocus.com/bid/91590
- http://www.securitytracker.com/id/1036287
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-089
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.