PT-2019-2313 · Microsoft · Windows

Published

2019-05-14

·

Updated

2020-08-24

·

CVE-2019-0707

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description An elevation of privilege issue exists due to the failure of ndis.sys to check the length of a buffer prior to copying memory to it. This could allow an attacker to elevate their privilege level by running a specially crafted application in a local attack scenario.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-02084
CVE-2019-0707

Affected Products

Windows