My Photo
Name:
Location: Blue Ridge, Va., United States

Wednesday, December 06, 2006

Intel LAN Driver Unspecified Privilege Escalation Vulnerability

Software:
Intel PRO 10/100 Adapters (Linux) 3.x
Intel PRO 10/100 Adapters (UnixWare/SCO6) 4.x
Intel PRO 10/100 Adapters (Windows) 8.x
Intel PRO/1000 Adapters (Linux) 7.x
Intel PRO/1000 Adapters (UnixWare/SCO6) 9.x
Intel PRO/1000 Adapters (Windows) 8.x
Intel PRO/1000 PCIe Adapters (Windows) 9.x
Intel PRO/10GbE Adapters (Linux) 1.x

Description:
A vulnerability has been reported in Intel LAN drivers, which can be exploited by malicious, local users to gain escalated privileges.
The vulnerability is caused due to an unspecified error and can be exploited to cause a buffer overflow by using certain function calls incorrectly.
Successful exploitation allows execution of arbitrary code with kernel-level privileges.
Solution:
Apply patches (see the vendor's advisory for details).
http://secunia.com/advisories/23221/
Original Advisory:
Intel: http://www.intel.com/support/network/sb/CS-023726.htm

0 Comments:

Post a Comment

<< Home