Skip to main content

Microsoft Windows Ancillary Function Driver Kernel Overwrite Vulnerability( 15 October 2008 )

Last Update Date: 28 Jan 2011 Release Date: 15 Oct 2008 4578 Views

RISK: Medium Risk

An elevation of privilege vulnerability exists in the Ancillary Function Driver (afd.sys) due to Windows improperly validating input passed from user mode to the kernel. The vulnerability could allow an attacker to run code with elevated privileges. A local attacker who successfully exploited this vulnerability could execute arbitrary code and take complete control of an affected system. The attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.