The IOCTL 9031 (BIOCGSTATS) handler in the NPF.SYS device driver in WinPcap before 4.0.1 allows local users to overwrite memory and execute arbitrary code via malformed Interrupt Request Packet (Irp) parameters.
Link | Tags |
---|---|
http://securitytracker.com/id?1018350 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/35309 | vdb entry |
http://www.winpcap.org/misc/changelog.htm | |
https://www.exploit-db.com/exploits/4165 | exploit |
http://secunia.com/advisories/25982 | third party advisory patch vendor advisory |
http://osvdb.org/37889 | vdb entry |
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=550 | third party advisory |
http://www.securityfocus.com/bid/24829 | vdb entry patch |
http://www.securityfocus.com/archive/1/473270/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/473297/100/0/threaded | mailing list |
http://www.securityfocus.com/archive/1/473301/100/0/threaded | mailing list |
http://www.vupen.com/english/advisories/2007/2468 | vdb entry |