CVE-2008-5229
N/A
N/A
Summary
Stack-based buffer overflow in Microsoft Device IO Control in iphlpapi.dll in Microsoft Windows Vista Gold and SP1 allows local users in the Network Configuration Operator group to gain privileges or cause a denial of service (system crash) via a large invalid PrefixLength to the CreateIpForwardEntry2 method, as demonstrated by a "route add" command. NOTE: this issue might not cross privilege boundaries.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/archive/1/498650/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46742
- http://www.securityfocus.com/archive/1/498471/100/0/threaded
- http://secunia.com/advisories/32791
- http://securitytracker.com/id?1021245
- http://securityreason.com/securityalert/4646
- http://www.securityfocus.com/bid/32357
References
- http://www.securityfocus.com/archive/1/498650/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/46742
- http://www.securityfocus.com/archive/1/498471/100/0/threaded
- http://secunia.com/advisories/32791
- http://securitytracker.com/id?1021245
- http://securityreason.com/securityalert/4646
- http://www.securityfocus.com/bid/32357
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.