This script is Copyright (C) 2013-2015 Tenable Network Security, Inc.
The Windows kernel drivers on the remote host are affected by multiple
The remote Windows host has the following vulnerabilities :
- Multiple errors exist in the Windows kernel-mode
drivers that could allow privilege escalation and
arbitrary code execution. (CVE-2013-3899, CVE-2013-3902,
- An error exists in the way the Windows kernel-mode
driver parses TrueType fonts that could allow denial
of service attacks. (CVE-2013-3903)
- An error exists in the Windows audio port-class driver
that could allow privilege escalation and arbitrary
code execution. (CVE-2013-3907)
An attacker who successfully exploited these vulnerabilities could read
arbitrary amounts of kernel memory or gain elevated privileges.
See also :
Microsoft has released a set of patches for Windows XP, 2003, Vista,
2008, 7, 2008 R2, 8, 2012, 8.1, and 2012 R2.
Risk factor :
High / CVSS Base Score : 7.2
CVSS Temporal Score : 6.3
Public Exploit Available : true
Family: Windows : Microsoft Bulletins
Nessus Plugin ID: 71316 ()
Bugtraq ID: 6408064084640876409064091
CVE ID: CVE-2013-3899CVE-2013-3902CVE-2013-3903CVE-2013-3907CVE-2013-5058
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.