CVE-2011-2005: Microsoft Ancillary Function Driver (afd.sys) Improper Input Validation Vulnerability
afd.sys in the Ancillary Function Driver in Microsoft Windows does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application.
Other sources
afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-2005?
CVE-2011-2005 is classified as a critical vulnerability due to its potential for privilege escalation.
How do I fix CVE-2011-2005?
To fix CVE-2011-2005, apply the Microsoft security update MS11-080 provided for affected systems.
What software versions are affected by CVE-2011-2005?
CVE-2011-2005 affects Microsoft Windows XP SP2, SP3, and Windows Server 2003 SP2.
Can CVE-2011-2005 be exploited remotely?
No, CVE-2011-2005 requires local access to exploit the vulnerability.
What is the impact of exploiting CVE-2011-2005?
Exploiting CVE-2011-2005 allows local users to gain elevated privileges on the system.