VUPEN Vulnerability Research Team discovered a vulnerability affecting Microsoft Windows. The vulnerability is caused by a memory corruption within the kernel-mode device driver “Win32k.sys” when handling Device Contexts (DC) via the “GetDCEx()” function, which could be exploited by local attackers to gain ring0 privileges via a specially crafted application.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/90527/mskernel-corrupt.txt
Source: https://packetstormsecurity.com/files/90527/Microsoft-Windows-Kernel-GetDCEx-Memory-Corruption.html

