CVE Database
/

CVE-2008-4036

Back to search

CVE-2008-4036

Published: Oct 15, 2008

Modified: Oct 15, 2024

PUBLISHED

Description

Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that triggers an erroneous decrement of a variable, related to validation of parameters for Virtual Address Descriptors (VADs) and a "memory allocation mapping error," aka "Virtual Address Descriptor Elevation of Privilege Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

32251
third-party-advisory
x_refsource_SECUNIA
SSRT080143
vendor-advisory
x_refsource_HP
ADV-2008-2815
vdb-entry
x_refsource_VUPEN
1021051
vdb-entry
x_refsource_SECTRACK
HPSBST02379
vendor-advisory
x_refsource_HP
MS08-064
vendor-advisory
x_refsource_MS
31675
vdb-entry
x_refsource_BID
TA08-288A
third-party-advisory
x_refsource_CERT
oval:org.mitre.oval:def:5343
vdb-entry
signature
x_refsource_OVAL
win-ms08kb956841-update(45572)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now