Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2008-4363
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2008-4363

Description:
DLMFENC.sys 1.0.0.28 in DESlock+ 3.2.7 allows local users to cause a denial of service (system crash) or potentially execute arbitrary code via a certain DLMFENC_IOCTL request to \\.\DLKPFSD_Device that overwrites a pointer, probably related to use of the ProbeForRead function when ProbeForWrite was intended.

CVE Status:
Candidate

References:

SREASON
  http://securityreason.com/securityalert/4342

SAID
  Secunia Advisory: SA31921

MISC
  http://digit-labs.org/files/exploits/deslock-probe-read.c

MILW0RM
  http://www.milw0rm.com/exploits/6498


Return to the previous page.