A vulnerability was discovered in the Win32k ValidateZorder component of the Windows Kernel which might lead to local privilege escalation on Microsoft Windows 7. The root cause is a null pointer reference, in Microsoft Windows 7 and bellow a NULL page can be allocated and controlled by attackers and could lead to an EoP. |