CVE-2012-0157 | Microsoft Windows 7/Server 2003/Server 2008/Vista/XP win32k.sys PostMessage input validation (MS12-018 / Nessus ID 58330)
A vulnerability, which was classified as critical, was found in Microsoft Windows 7/Server 2003/Server 2008/Vista/XP. Affected is the function PostMessage of the file win32k.sys. The manipulation leads to improper input validation.
This vulnerability is traded as CVE-2012-0157. The attack needs to be approached locally. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.