In Shanda MapleStory Online V160, the SdoKeyCrypt.sys driver allows privilege escalation to NT AUTHORITY\SYSTEM because of not validating the IOCtl 0x8000c01c input value, leading to an integer signedness error and a heap-based buffer underflow.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-19094 In Shanda MapleStory Online V160, the SdoKeyCrypt.sys driver allows privilege escalation to NT AUTHORITY\SYSTEM because of not validating the IOCtl 0x8000c01c input value, leading to an integer signedness error and a heap-based buffer underflow.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T22:01:54.071Z

Reserved: 2019-03-12T00:00:00

Link: CVE-2019-9729

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-03-12T22:29:01.363

Modified: 2024-11-21T04:52:11.387

Link: CVE-2019-9729

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.