CVE-2013-5058
Integer overflow in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows local users to gain privileges via a crafted application, aka "Win32k Integer Overflow Vulnerability."
- Affected products
- Windows, Windows 7, Windows 8, Windows 8.1, Windows Server 2003, Windows Server 2008, Windows Server 2012, Windows Vista
- Microsoft Windows 7
- All versions
- Microsoft Windows 8
- All versions
- Microsoft Windows 8.1
- All versions
- Microsoft Windows Rt
- All versions
- Microsoft Windows Rt 8.1
- All versions
- Microsoft Windows Server 2003
- All versions
- Fix
- Available
- CVSS 2.0
- 6.9 MEDIUM
- EPSS
- 2.8% (85th percentile)
- Weakness
- CWE-190
- NVD status
- Modified
- Published
- 2013-12-11
CVE-2013-5058 at NVD
6 known exploits for CVE-2013-5058
Proof-of-concept code and exploit modules indexed by Sploitus
Windows Kernel win32k.sys - Integer Overflow (MS13-101)
MS13-101 Windows Kernel win32k.sys - Integer Overflow Vulnerability
Microsoft Windows Kernel - win32k.sys Integer Overflow (MS13-101)
Microsoft Windows Kernel - 'win32k.sys' Integer Overflow (MS13-101)
Divide Error In Windows Kernel Vulnerability
Divide Error In Windows Kernel