First published: Wed Dec 31 2003(Updated: )
NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create and overwrite arbitrary files via a symlink attack on \winnt\system32\drivers using the subst command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pedestal Software Integrity Protection Driver | =1.2 | |
Pedestal Software Integrity Protection Driver | =1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.