NA

CVE-2014-49712

Vulnerability Summary

A vulnerability within the MQAC module allows an malicious user to inject memory they control into an arbitrary location they define. This can be used by an malicious user to overwrite HalDispatchTable+0x4 and execute arbitrary code by subsequently calling NtQueryIntervalProfile. Microsoft MQ Access Control version 5.1.0.1110 on XP SP3 is affected.

Exploits

A vulnerability within the MQAC module allows an attacker to inject memory they control into an arbitrary location they define This can be used by an attacker to overwrite HalDispatchTable+0x4 and execute arbitrary code by subsequently calling NtQueryIntervalProfile Microsoft MQ Access Control version 5101110 on XP SP3 is affected ...
A vulnerability within the BthPan module allows an attacker to inject memory they control into an arbitrary location they define This can be used by an attacker to overwrite HalDispatchTable+0x4 and execute arbitrary code by subsequently calling NtQueryIntervalProfile Microsoft Bluetooth Personal Area Networking version 5126005512 on XP SP3 is ...