CVE-2009-1127 is a critical vulnerability in the win32k.sys kernel component of various Microsoft Windows operating systems, including Windows 2000, XP, Server 2003, Vista, and Server 2008. It allows a local attacker to achieve privilege escalation by exploiting a NULL pointer dereference through a specially crafted application. This vulnerability has a CVSS score of 7.2, indicating high severity. Its attack vector is local with low attack complexity, meaning an authenticated user on the system can easily trigger it to gain full control over the affected system (confidentiality, integrity, and availability impacts are all high). Despite its severity, there is no evidence of active exploitation, no publicly available exploit code in Metasploit or ExploitDB, and minimal community discussion or media coverage. The vulnerability is also not listed in CISA's Known Exploited Vulnerabilities Catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2000:*:sp4:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:sp2:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:sp2:itanium:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:*:sp2:x64:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_server_2008:*:*:x32:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.