Description
The kernel-mode driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-2511, CVE-2015-2517, and CVE-2015-2518.
In plain language
AI Act nowThis is a Windows privilege-escalation flaw that lets a local user gain higher system access; if your business runs affected older Windows versions, you should act now because attackers have used it in real ransomware campaigns.
CVE-2015-2546 is a local privilege escalation weakness (CWE-119) in a Windows kernel-mode driver; a specially crafted application can cause memory-corruption behavior that lets an attacker running code on the same machine gain elevated privileges, and it is listed in CISA KEV as used in ransomware campaigns.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:RUser InteractionS:CScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Required action: Apply updates per vendor instructions.
Attack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
2 techniquesReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2015-2546 and every CVE in our database. Create a free account — no credit card required.
Create Free Account