Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v6 - Exploits Update (Wed Aug 23 2006)

CSRSS facename exploit update

Exploits/Local  [Windows]




• Wed Aug 23 2006
This module exploits a stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process. Allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. This update improve the exploit reliability in windows 2003.

Exploits Vulnerabiltiy: CVE-2005-551



< Back to Product Updates