CVE-2011-1229
Last modified
CVE-2011-1229 is a vulnerability of currently unknown severity. win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other "Vulnerability Type 2" CVEs listed in MS11-034, aka "Win32k Null Pointer De-reference Vulnerability.". EPSS estimates a 1.47% chance of exploitation in the next 30 days.
Description
win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, a different vulnerability than other "Vulnerability Type 2" CVEs listed in MS11-034, aka "Win32k Null Pointer De-reference Vulnerability."
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows 2003 Server | All versions | Sp2 |
| Microsoft | Windows 7 | All versions | — |
| Microsoft | Windows Server 2003 | All versions | Sp2 |
| Microsoft | Windows Server 2008 | All versions | — |
| Microsoft | Windows Server 2008 | r2 | — |
| Microsoft | Windows Vista | All versions | Sp1 |
| Microsoft | Windows Xp | All versions | Sp2 |
| Avaya | Agent Access | All versions | — |
| Avaya | Aura Conferencing Standard Edition | 6.0.0 | — |
| Avaya | Basic Call Management System Reporting Desktop | All versions | — |
| Avaya | Call Management Server Supervisor | All versions | — |
| Avaya | Callpilot | >= 4.0.x, <= 5.0.x | — |
| Avaya | Callvisor Asai Lan | All versions | — |
| Avaya | Communication Server 1000 Telephony Manager | >= 3.0.0, <= 4.0.0 | — |
| Avaya | Computer Telephony | All versions | — |
| Avaya | Contact Center Express | All versions | — |
| Avaya | Customer Interaction Express | All versions | — |
| Avaya | Enterprise Manager | All versions | — |
| Avaya | Integrated Management | All versions | — |
| Avaya | Interaction Center | All versions | — |
| Avaya | Ip Agent | All versions | — |
| Avaya | Ip Softphone | All versions | — |
| Avaya | Meeting Exchange | >= 5.0.0, <= 5.2.0 | — |
| Avaya | Messaging Application Server | >= 4.0.x, <= 5.2.x | — |
| Avaya | Network Reporting | All versions | — |
| Avaya | Octelaccess Server | All versions | — |
| Avaya | Octeldesigner | All versions | — |
| Avaya | Operational Analyst | All versions | — |
| Avaya | Outbound Contact Management | All versions | — |
| Avaya | Speech Access | All versions | — |
| Avaya | Unified Communication Center | All versions | — |
| Avaya | Unified Messenger | All versions | — |
| Avaya | Visual Messenger | All versions | — |
| Avaya | Visual Vector Client | All versions | — |
| Avaya | Vpnmanager Console | All versions | — |
| Avaya | Web Messenger | All versions | — |
References
- http://osvdb.org/71735Broken Link
- http://secunia.com/advisories/44156Third Party Advisory
- http://support.avaya.com/css/P8/documents/100133352Third Party Advisory
- http://www.securityfocus.com/bid/47229Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1025345Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA11-102A.htmlThird Party Advisory, US Government Resource
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-034Patch, Vendor Advisory
- http://osvdb.org/71735Broken Link
- http://secunia.com/advisories/44156Third Party Advisory
- http://support.avaya.com/css/P8/documents/100133352Third Party Advisory
- http://www.securityfocus.com/bid/47229Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1025345Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA11-102A.htmlThird Party Advisory, US Government Resource
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-034Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2011-1229?
How severe is CVE-2011-1229?
How do I fix CVE-2011-1229?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2011
- CVE-2011-1223Buffer overflow in the Alternate Data Stream (aka ADS or nam…
- CVE-2011-1224IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 …
- CVE-2011-1225win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1226win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1227win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1228win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1230win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1231win32k.sys in the kernel-mode drivers in Microsoft Windows X…8.4
- CVE-2011-1232win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1233win32k.sys in the kernel-mode drivers in Microsoft Windows X…
- CVE-2011-1234Use-after-free vulnerability in win32k.sys in the kernel-mod…
- CVE-2011-1235Use-after-free vulnerability in win32k.sys in the kernel-mod…
Are you affected by CVE-2011-1229?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
