[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96174

 
 

909

 
 

78077

 
 

109

Paid content will be excluded from the download.


Download | Alert*
OVAL

Privilege Escalation Vulnerability in Virtual PC and Virtual Server - MS09-033

ID: oval:org.secpod.oval:def:2639Date: (C)2011-10-31   (M)2017-10-04
Class: PATCHFamily: windows




The host is missing an important security update according to Microsoft security bulletin, MS09-033. The update is required to fix privilege escalation vulnerability. A flaw is present in the Microsoft Virtual PC and Microsoft Virtual Server, which fails to validate privilege levels when executing specific instructions in the Virtual Machine Monitor. Successful exploitation allows an attacker to execute code with elevated privilege or gain the same user rights as the local user.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Product:
Microsoft Virtual Server 2005
Microsoft Virtual PC 2004
Microsoft Virtual PC 2007
Reference:
MS09-033
CVE-2009-1542
CVE    1
CVE-2009-1542
CPE    6
cpe:/a:microsoft:virtual_server:2005::enterprise
cpe:/a:microsoft:virtual_server:2005::std
cpe:/a:microsoft:virtual_pc:2007:sp1
cpe:/a:microsoft:virtual_pc:2007
...
XCCDF    6
xccdf_com.secpod_benchmark_microsoft-windows-server-2008
xccdf_com.secpod_benchmark_microsoft-windows-server-2003
xccdf_com.secpod_benchmark_microsoft-windows-2000
xccdf_com.secpod_benchmark_microsoft-windows-vista
...

© 2013 SecPod Technologies