The SfnLOGONNOTIFY function in win32k.sys in the kernel in Microsoft Windows 2000, XP, and Server 2003 allows local users to cause a denial of service (system crash) via a 0x4c value in the second argument (aka the Msg argument) of a PostMessage function call for the DDEMLEvent window.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/39630 | vdb entry exploit |
http://secunia.com/advisories/39456 | third party advisory vendor advisory |
http://vigilance.fr/vulnerability/Windows-denials-of-service-of-win32k-sys-9607 | exploit |
http://www.securityfocus.com/archive/1/510884/100/0/threaded | mailing list |