Intrusion Prevention

MS.Windows.Kernel.Ntoskrnl.Privilege.Elevation

Description

This indicates an attack attempt to exploit an Elevation of Privileges vulnerability in Microsoft Windows Kernel.
The vulnerability is due to insufficient sanitizing of inputs in the application. A remote attacker can exploit this lead to elevation of privileges.

Affected Products

Windows Vista
Windows 7
Windows 8.1
Windows RT 8.1
Windows 10
Windows Server 2008
Windows Server 2008 R2
Windows Server 2012
Windows Server 2012 R2

Impact

Privilege Escalation: Remote attackers can leverage their privileges on vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://technet.microsoft.com/security/bulletin/MS16-124

CVE References

CVE-2016-0070