CVE-2008-0366 Information
Feb 14, 2021
cve
Description
CORE FORCE before 0.95.172 does not properly validate arguments to SSDT hook handler functions in the Registry module which allows local users to cause a denial of service (system crash) and possibly execute arbitrary code in the kernel context via crafted arguments.
Reference
http://force.coresecurity.com/index.php?module=articles&func=display&aid=32 http://securityreason.com/securityalert/3555 http://www.coresecurity.com/?action=item&id=2025 http://www.securityfocus.com/archive/1/486513/100/0/threaded http://www.securityfocus.com/bid/27341 http://www.securitytracker.com/id?1019245 http://www.vupen.com/english/advisories/2008/0242
Share on: