4.9
CVSSv2

CVE-2008-1138

Published: 04/03/2008 Updated: 29/09/2017
CVSS v2 Base Score: 4.9 | Impact Score: 6.9 | Exploitability Score: 3.9
VMScore: 495
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

DLMFENC.sys 1.0.0.26 in DESlock+ 3.2.6 and previous versions allows local users to cause a denial of service (system crash) via a certain ZERO_MEM DLMFENC_IOCTL request to \\.\DLKPFSD_Device, aka the "ring0 link list zero" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

deslock deslock

Exploits

/* deslock-list-zeroc * * Copyright (c) 2008 by <mu-b@digit-labsorg> * * DESlock+ <= 326 local kernel ring0 link list zero POC * by mu-b - Fri 21 Dec 2007 * * - Tested on: DLMFENCsys 10026 * * - Private Source Code -DO NOT DISTRIBUTE - * wwwdigit-labsorg/ -- Digit-Labs 2008!@$! */ #include <stdioh> #i ...