Vulnerability CVE-2007-5756


Published: 2007-11-13   Modified: 2012-02-12

Description:
Multiple array index errors in the bpf_filter_init function in NPF.SYS in WinPcap before 4.0.2, when run in monitor mode (aka Table Management Extensions or TME), and as used in Wireshark and possibly other products, allow local users to gain privileges via crafted IOCTL requests.

Type:

CWE-119

(Improper Restriction of Operations within the Bounds of a Memory Buffer)

CVSS2 => (AV:L/AC:M/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
6.9/10
10/10
3.4/10
Exploit range
Attack complexity
Authentication
Local
Medium
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
Winpcap -> Winpcap 

 References:
http://secunia.com/advisories/27676
http://xforce.iss.net/xforce/xfdb/38433
http://www.winpcap.org/misc/changelog.htm
http://www.vupen.com/english/advisories/2007/3835
http://www.securitytracker.com/id?1018935
http://www.securityfocus.com/bid/26409
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=625

Copyright 2024, cxsecurity.com

 

Back to Top