Forum Index

It appears you have not yet registered with our community which limits what you can do & see. It's Free To register, please click here.





Security Alerts and vulnerabilities Lets keep abreast on the latest threats by posting those findings here..

Reply
 
Thread Tools Display Modes
  #1  
Old 01-05-2007, 10:01 AM
Symantec's Avatar
Symantec Symantec is offline
Senior Member
 
Join Date: Oct 2006
Posts: 295
The CSRSS Bug and Vista

The CSRSS Bug and Vista
<p>With the <a href="http://www.determina.com/security.research/vulnerabilities/csrss-harderror.html">public advisory</a> by Determina about a double-free bug in a CSRSS message function, the immediate question was: does it really affect Vista? The short answer is "yes, but not reliably." Arbitrary code execution is possible, but requires a great deal of luck, though a denial-of-service is definitely possible. The long answer is described by Matthew Conover <a href="http://atr.corp.symantec.com/index.php?option=com_content&task=view&id=352&Item id=51">here</a>.</p>

<p>Why the fuss? Simply put, successful exploitation of the bug allows even the most restricted user-mode application to elevate its privileges to the System level. From there, the kernel is accessible even on Vista. Even without entering the kernel, System-level privileges allow almost complete control of the system, so the possibilities are limited only by the imagination.</p>

<p>Of course, that the bug isn't reliable on Vista doesn't mean that everyone can relax. The bug does affect earlier versions of Windows, where arbitrary code execution is far easier to achieve. Is it likely to be exploited? Oh yes. Not such a happy New Year.<br />
</p>
http://www.symantec.com/enterprise/security_response/weblog/2007/01/the_csrss_bug_and_vista.html
http://www.symantec.com/enterprise/security_response/weblog/2007/01/the_csrss_bug_and_vista.html
Fri, 05 Jan 2007 06:45:00 -0800
Reply With Quote
Posted


Reply

  • Submit Thread to Digg Digg
  • Submit Thread to del.icio.us del.icio.us
  • Submit Thread to StumbleUpon StumbleUpon
  • Submit Thread to Google Google
  • Bookmarks

    Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
     
    Thread Tools
    Display Modes

    Posting Rules
    You may not post new threads
    You may not post replies
    You may not post attachments
    You may not edit your posts

    BB code is On
    Smilies are On
    [IMG] code is On
    HTML code is Off
    Forum Jump



    All times are GMT -5. The time now is 11:28 AM.


    Firefox 2