First published: Sat Oct 16 2004(Updated: )
The Virtual DOS Machine (VDM) subsystem of Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows local users to access kernel memory and gain privileges via a malicious program that modified some system structures in a way that is not properly validated by privileged operating system functions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT | =4.0 | |
Microsoft Windows 2000 | ||
Microsoft Windows Server 2003 | =r2 | |
Microsoft Windows XP | =gold |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0208 is considered to have a high severity due to its potential to allow local users to access kernel memory and escalate privileges.
To mitigate CVE-2004-0208, it is recommended to update your system to a newer, supported version of Windows since the affected versions are no longer supported.
CVE-2004-0208 affects Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003.
CVE-2004-0208 requires local access to the system, making remote exploitation not possible.
Exploitation of CVE-2004-0208 could allow an attacker to gain unauthorized access to sensitive kernel memory and elevate their privileges on the affected system.