PT-2019-12332 · Microsoft · Npcap

R0T0Tiller

·

Publicado

2019-04-24

·

Atualizado

2019-04-29

·

CVE-2019-11490

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Npcap version 0.992
Description An issue was discovered that could lead to kernel pool corruption when sending a malformed .pcap file with the loopback adapter using either the pcap sendqueue queue() or pcap sendqueue transmit() functions. This could result in arbitrary code execution inside the Windows kernel and allow escalation of privileges.
Recommendations For Npcap version 0.992, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Double Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-11490

Produtos afetados

Npcap