Skip to main content

Microsoft Windows Virtual Address Descriptor Elevation of Privilege Vulnerability( 15 October 2008 )

Last Update Date: 28 Jan 2011 Release Date: 15 Oct 2008 5111 Views

RISK: Medium Risk

An elevation of privilege vulnerability exists in the way that Memory Manager handles memory allocation and Virtual Address Descriptors (VADs). The vulnerability could allow elevation of privilege if an authenticated attacker runs a specially crafted program on an affected system. An attacker who successfully exploited this vulnerability could gain elevation of privilege on an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full administrative rights.