CORE IMPACT v7 - Exploits Update (Thu Aug 30 2007)
Symantec SYMTDI.SYS IOCTL Handler Privilege Escalation Exploit
Exploits/Local [Windows]
Thu Aug 30 2007
This module exploits a vulnerability in Symantec products when the 0x83022323 function is invoked with a specially crafted parameter. The IOCTL 0x83022323 handler in the SYMTDI.SYS device driver in Symantec products allows local users to overwrite memory and execute arbitrary code via malformed Interrupt Request Packet (Irp) parameters to obtain system privileges.
Exploits Vulnerabiltiy: CVE-2007-3673











