CVE-2013-3862: Microsoft Windows 7
Medium severity, CVSS 6.9. EPSS: 1.7% chance of exploitation in the next 30 days.
Double free vulnerability in Microsoft Windows 7 and Server 2008 R2 SP1 allows local users to gain privileges via a crafted service description that is not properly handled by services.exe in the Service Control Manager (SCM), aka "Service Control Manager Double Free Vulnerability."
Affected products
Published 2013-09-11. Last modified 2026-06-16.