Friday, February 10, 2012

Windows-7 Memory Corruption Vulnerability


A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to potentially compromise a user’s system.
The vulnerability is caused due to an error in win32k.sys and can be exploited to corrupt memory via e.g. a specially crafted web page containing an IFRAME with an overly large “height” attribute viewed using the Apple Safari browser.
Successful exploitation may allow execution of arbitrary code with kernel-mode privileges.
The vulnerability is confirmed on a fully patched Windows 7 Professional 64-bit.
Other versions may also be affected.
Solution:
No effective solution is currently available.
Discovered By:
webDEViL
Original Advisory:
https://twitter.com/#!/w3bd3vil/status/148454992989261824
<iframe height=’18082563′></iframe> causes a BSoD on win 7 x64 via Safari. Lol!

No comments:

Post a Comment

we need your feed back :D