Intrusion Prevention

MS.Windows.Common.Log.File.System.Driver.Information.Disclosure

Description

This indicates an attack attempt to exploit an Information Disclosure vulnerability in Microsoft Windows.
The vulnerability is due to an error in the Windows Common Log File System (CLFS) driver when running a crafted application. A remote attacker may be able to exploit this to gain sensitive information from vulnerable systems.

Affected Products

Windows Vista
Windows Server 2008
Windows 7
Windows Server 2008 R2
Windows 8.1
Windows Server 2012
Windows Server 2012 R2
Windows RT 8.1
Windows 10
Windows Server 2016

Impact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://technet.microsoft.com/security/bulletin/MS16-153

CVE References

CVE-2016-7295