PT-2019-12332 · Microsoft · Npcap

R0T0Tiller

·

Published

2019-04-24

·

Updated

2019-04-29

·

CVE-2019-11490

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Npcap version 0.992
Description An issue was discovered that could lead to kernel pool corruption when sending a malformed .pcap file with the loopback adapter using either the pcap sendqueue queue() or pcap sendqueue transmit() functions. This could result in arbitrary code execution inside the Windows kernel and allow escalation of privileges.
Recommendations For Npcap version 0.992, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Double Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-11490

Affected Products

Npcap