Lucene search

K
zdiFabien Perigaud (@0xf4b) from Synacktiv (@Synacktiv)ZDI-21-824
HistoryJul 19, 2021 - 12:00 a.m.

(Pwn2Own) Microsoft Windows spaceport Out-Of-Bounds Write Privilege Escalation Vulnerability

2021-07-1900:00:00
Fabien Perigaud (@0xf4b) from Synacktiv (@Synacktiv)
www.zerodayinitiative.com
39
microsoft windows
spaceport.sys
privilege escalation
user-supplied data
system
vulnerability

EPSS

0.001

Percentile

31.7%

This vulnerability allows local attackers to escalate privileges on affected installations of Microsoft Windows. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the spaceport.sys driver. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM.