← Back to browse · API

CVE-2016-3309

Severity
HIGH
CVSS
7.8
EPSS
0.20625
Risk score
63.42
CISA KEV
Yes
PoC
No
Published
2016-08-09
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2016-4341, GHSA-7CMX-3W9Q-4V5G
Products
Microsoft:Windows, n/a:n/a n/a
Sources
cisa.gov CVE-2016-3309
euvd EUVD-2016-4341

Description

The kernel-mode drivers in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allow local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3308, CVE-2016-3310, and CVE-2016-3311.

References