Описание
Multiple array index errors in the bpf_filter_init function in NPF.SYS in WinPcap before 4.0.2, when run in monitor mode (aka Table Management Extensions or TME), and as used in Wireshark and possibly other products, allow local users to gain privileges via crafted IOCTL requests.
Ссылки
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Release Notes
- Third Party AdvisoryVDB Entry
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Release Notes
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 4.0.2 (исключая)
cpe:2.3:a:winpcap:winpcap:*:*:*:*:*:*:*:*
EPSS
Процентиль: 13%
0.00043
Низкий
6.9 Medium
CVSS2
Дефекты
CWE-129
Связанные уязвимости
github
почти 4 года назад
Multiple array index errors in the bpf_filter_init function in NPF.SYS in WinPcap before 4.0.2, when run in monitor mode (aka Table Management Extensions or TME), and as used in Wireshark and possibly other products, allow local users to gain privileges via crafted IOCTL requests.
EPSS
Процентиль: 13%
0.00043
Низкий
6.9 Medium
CVSS2
Дефекты
CWE-129