[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Elevation of privilege vulnerability in Windows CSRSS (II)

ID: oval:org.secpod.oval:def:1411Date: (C)2011-07-13   (M)2023-12-14
Class: VULNERABILITYFamily: windows




The host is installed with Microsoft Windows XP or Windows server 2003 or Windows server 2008 or Windows Vista and is prone to elevation of privilege vulnerability. A flaw is present in Client/Server Run-time Subsystem (CSRSS) that is caused when user input is used as an index for an array without first checking it for a negative value. Successful exploitation allows remote attacker to run arbitrary code in kernel mode.

Platform:
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Reference:
CVE-2011-1283
CVE    1
CVE-2011-1283
CPE    21
cpe:/o:microsoft:windows_server_2008:::x64
cpe:/o:microsoft:windows_server_2008:::x86
cpe:/o:microsoft:windows_server_2008:::itanium
cpe:/o:microsoft:windows_server_2008::sp2:itanium
...

© SecPod Technologies