CVE-2019-11490: Double Free
An issue was discovered in Npcap 0.992. Sending a malformed .pcap file with the loopback adapter using either pcapsendqueuequeue() or pcapsendqueuetransmit() results in kernel pool corruption. This could lead to arbitrary code executing inside the Windows kernel and allow escalation of privileges.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-11490?
CVE-2019-11490 is classified as a high severity vulnerability due to potential kernel pool corruption and escalation of privileges.
How do I fix CVE-2019-11490?
To fix CVE-2019-11490, update Npcap to the latest version which includes patches for this vulnerability.
What impact does CVE-2019-11490 have on my system?
CVE-2019-11490 can allow an attacker to execute arbitrary code within the Windows kernel, potentially leading to system compromise.
Which versions of Npcap are affected by CVE-2019-11490?
CVE-2019-11490 specifically affects Npcap version 0.992.
What was the method of exploitation for CVE-2019-11490?
CVE-2019-11490 can be exploited by sending a malformed .pcap file through the loopback adapter using certain Npcap functions.