Microsoft Windows XP - Redirector Privilege Escalation

EDB-ID:

22225


Author:

Nsfocus

Type:

local


Platform:

Windows

Date:

2003-02-05


source: https://www.securityfocus.com/bid/6778/info

The Microsoft Windows XP Redirector does not properly handle certain parameters that are passed to it. If one of these parameters was unusually long, a buffer could be overrun, resulting in either Windows XP crashing or code execution with elevated privileges.

c:\> net use \\AAAA...AAA\A