win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP3 allows local users to gain privileges via a crafted application that triggers a NULL pointer dereference, aka "Win32k Null Pointer De-reference Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.6%