CVE-2007-5587

Buffer overflow in Macrovision SafeDisc secdrv.sys before 4.3.86.0, as shipped in Microsoft Windows XP SP2, XP Professional x64 and x64 SP2, Server 2003 SP1 and SP2, and Server 2003 x64 and x64 SP2 allows local users to overwrite arbitrary memory locations and gain privileges via a crafted argument to a METHOD_NEITHER IOCTL, as originally discovered in the wild.
References
Link Resource
http://blog.48bits.com/?p=172 Exploit
http://osvdb.org/41429
http://secunia.com/advisories/27285
http://securityreason.com/securityalert/3266
http://www.microsoft.com/technet/security/advisory/944653.mspx
http://www.reversemode.com/index.php?option=com_mamblog&Itemid=15&task=show&action=view&id=43&Itemid=15
http://www.securityfocus.com/archive/1/482474/100/0/threaded
http://www.securityfocus.com/archive/1/482482/100/0/threaded
http://www.securityfocus.com/archive/1/485268/100/0/threaded
http://www.securityfocus.com/archive/1/485268/100/0/threaded
http://www.securityfocus.com/bid/26121
http://www.securitytracker.com/id?1018833
http://www.symantec.com/enterprise/security_response/weblog/2007/10/privilege_escalation_exploit_i.html
http://www.us-cert.gov/cas/techalerts/TA07-345A.html US Government Resource
http://www.vupen.com/english/advisories/2007/3537
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-067
https://exchange.xforce.ibmcloud.com/vulnerabilities/37284
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4584
http://blog.48bits.com/?p=172 Exploit
http://osvdb.org/41429
http://secunia.com/advisories/27285
http://securityreason.com/securityalert/3266
http://www.microsoft.com/technet/security/advisory/944653.mspx
http://www.reversemode.com/index.php?option=com_mamblog&Itemid=15&task=show&action=view&id=43&Itemid=15
http://www.securityfocus.com/archive/1/482474/100/0/threaded
http://www.securityfocus.com/archive/1/482482/100/0/threaded
http://www.securityfocus.com/archive/1/485268/100/0/threaded
http://www.securityfocus.com/archive/1/485268/100/0/threaded
http://www.securityfocus.com/bid/26121
http://www.securitytracker.com/id?1018833
http://www.symantec.com/enterprise/security_response/weblog/2007/10/privilege_escalation_exploit_i.html
http://www.us-cert.gov/cas/techalerts/TA07-345A.html US Government Resource
http://www.vupen.com/english/advisories/2007/3537
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-067
https://exchange.xforce.ibmcloud.com/vulnerabilities/37284
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4584
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:microsoft:windows_2003_server:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_xp:*:*:*:*:*:*:*:*
cpe:2.3:a:macrovision:safedisc:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:38

Type Values Removed Values Added
References () http://blog.48bits.com/?p=172 - Exploit () http://blog.48bits.com/?p=172 - Exploit
References () http://osvdb.org/41429 - () http://osvdb.org/41429 -
References () http://secunia.com/advisories/27285 - () http://secunia.com/advisories/27285 -
References () http://securityreason.com/securityalert/3266 - () http://securityreason.com/securityalert/3266 -
References () http://www.microsoft.com/technet/security/advisory/944653.mspx - () http://www.microsoft.com/technet/security/advisory/944653.mspx -
References () http://www.reversemode.com/index.php?option=com_mamblog&Itemid=15&task=show&action=view&id=43&Itemid=15 - () http://www.reversemode.com/index.php?option=com_mamblog&Itemid=15&task=show&action=view&id=43&Itemid=15 -
References () http://www.securityfocus.com/archive/1/482474/100/0/threaded - () http://www.securityfocus.com/archive/1/482474/100/0/threaded -
References () http://www.securityfocus.com/archive/1/482482/100/0/threaded - () http://www.securityfocus.com/archive/1/482482/100/0/threaded -
References () http://www.securityfocus.com/archive/1/485268/100/0/threaded - () http://www.securityfocus.com/archive/1/485268/100/0/threaded -
References () http://www.securityfocus.com/bid/26121 - () http://www.securityfocus.com/bid/26121 -
References () http://www.securitytracker.com/id?1018833 - () http://www.securitytracker.com/id?1018833 -
References () http://www.symantec.com/enterprise/security_response/weblog/2007/10/privilege_escalation_exploit_i.html - () http://www.symantec.com/enterprise/security_response/weblog/2007/10/privilege_escalation_exploit_i.html -
References () http://www.us-cert.gov/cas/techalerts/TA07-345A.html - US Government Resource () http://www.us-cert.gov/cas/techalerts/TA07-345A.html - US Government Resource
References () http://www.vupen.com/english/advisories/2007/3537 - () http://www.vupen.com/english/advisories/2007/3537 -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-067 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-067 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/37284 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/37284 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4584 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4584 -

Information

Published : 2007-10-19 21:17

Updated : 2024-11-21 00:38


NVD link : CVE-2007-5587

Mitre link : CVE-2007-5587

CVE.ORG link : CVE-2007-5587


JSON object : View

Products Affected

macrovision

  • safedisc

microsoft

  • windows_xp
  • windows_2003_server
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-264

Permissions, Privileges, and Access Controls