1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Microsoft Windows Kernel-Mode Drivers Vulnerabilities

Report ID: SA201006488
Source: F-Secure
Date of Discovery: 10.08.2010
Criticality: Urgent
Affects:
Windows XP
Windows Server 2003
Windows Vista
Windows Server 2008
Windows 7
Windows Server 2008 R2

Compromise From: From local system
Compromise Type: Privilege escalation
DoS

Summary

Four reported vulnerabilities in Windows kernel-mode drivers could lead to escalation of privilege, while one other vulnerability could cause the system become unresponsive.

Detailed Description

Microsoft has reported five vulnerabilities in Windows kernel-mode drivers, four of which are escalation of privilege vulnerabilities while one is a denial of service vulnerability.

  • Win32k bounds checking vulnerability, caused by improper validation of an argument passed to a system call, could make the system to stop responding and automatically restart.
  • Win32k exception handling vulnerability, caused by improper handling of certain exceptions, could allow an attacker to run arbitrary code.
  • Win32k pool overflow vulnerability, caused by improper memory allocation when copying data from user mode, could allow an attacker to run arbitrary code.
  • Win32k user input validation vulnerability, caused by improper validation of input from user mode, could allow an attacker to run arbitrary code.
  • Win32k window creation vulnerability, caused by improper validation of pseudo handles within callback parameters when creating a new window, could allow an attacker to run arbitrary code.

Original Reference

CVE Reference

CVE-2010-1887
CVE-2010-1894
CVE-2010-1895
CVE-2010-1896
CVE-2010-1897