The tmeext.sys driver before 2.0.0.1015 in Trend Micro Antivirus Plus, Internet Security, and Maximum Security allows local users to write to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222400 IOCTL call.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.greyhathacker.net/?p=818 | exploit |
http://www.exploit-db.com/exploits/35962 | exploit |
http://esupport.trendmicro.com/en-us/home/pages/technical-support/1106233.aspx | vendor advisory |
http://www.osvdb.org/115514 | vdb entry |