PT-2004-3233 · Microsoft · Windows
Published
2004-12-31
·
Updated
2025-01-16
·
CVE-2004-2339
CVSS v3.1
8.4
High
| Vector | AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Microsoft Windows versions 2000, XP, and possibly 2003
Description:
The issue allows local users with the SeDebugPrivilege privilege to execute arbitrary code as kernel and read or write kernel memory via the NtSystemDebugControl function, which does not verify its pointer arguments. Note that this issue has been disputed since Administrator privileges are typically required to exploit it, thus privilege boundaries are not crossed.
Recommendations:
For Microsoft Windows 2000, XP, and possibly 2003, consider restricting the use of the SeDebugPrivilege privilege to minimize the risk of exploitation. As a temporary workaround, consider disabling the NtSystemDebugControl function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows