CVE-2015-2366 | Microsoft Windows Vista SP2 up to Server 2012 Kernel-Mode Driver win32k.sys access control (MS15-073 / EDB-38266)
A vulnerability was found in Microsoft Windows Vista SP2 up to Server 2012. It has been declared as problematic. Affected by this vulnerability is an unknown functionality in the library win32k.sys of the component Kernel-Mode Driver. The manipulation leads to improper access controls.
This vulnerability is known as CVE-2015-2366. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.