Exploit Microsoft Windows Kernel - 'UserCommitDesktopMemory' Use-After-Free (MS15-073)

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
38267
Проверка EDB
  1. Пройдено
Автор
NILS SOMMER
Тип уязвимости
DOS
Платформа
WINDOWS_X86
CVE
cve-2015-2365
Дата публикации
2015-09-22
Microsoft Windows Kernel - 'UserCommitDesktopMemory' Use-After-Free (MS15-073)
Код:
Source: https://code.google.com/p/google-security-research/issues/detail?id=335

Freed memory is accessed after switching between two desktops of which one is closed. The testcase crashes with and without special pool enabled. The attached crash output is with special enabled on win32k.sys and ntoskrnl.sys.

Proof of Concept:
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/38267.zip
 
Источник
www.exploit-db.com

Похожие темы