Oval Definition:
oval:org.mitre.oval:def:18614
Revision Date
:
2013-11-25
Version
:
45
Title
:
Win32k NULL Page Vulnerability (CVE-2013-3881) - MS13-081
Description
:
win32k.sys in the kernel-mode drivers in Microsoft Windows 7 SP1 and Windows Server 2008 R2 SP1 allows local users to gain privileges via a crafted application, aka "Win32k NULL Page Vulnerability."
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2013-3881
Platform(s)
:
Microsoft Windows 7
Microsoft Windows Server 2008 R2
Product(s)
:
Definition Synopsis
win/2008 r2
Microsoft Windows 7 (32-bit) Service Pack 1 is installed
OR
Microsoft Windows 7 x64 Service Pack 1 is installed
OR
Microsoft Windows Server 2008 R2 x64 Service Pack 1 is installed
OR
Microsoft Windows Server 2008 R2 Itanium-Based Edition Service Pack 1 is installed
AND
gdr/ldr
Check if the version of win32k.sys is less than 6.1.7601.18246
OR
ldr range
Check if the version of win32k.sys is less than 6.1.7601.22435
AND
Check if the version of Win32k.sys is greater than or equal to 6.1.7601.22000
BACK