Advisories Blog | G5 Cyber Security

Microsoft Windows MSMQ Privilege Escalation

Positive Technologies Research Team has discovered a privilege escalation vulnerability in Windows Message Queuing service (MSMQ). The IOCTL handler in mqac.sys does not properly validate buffer data associated with the Irp object, which allows local users to crash the system or execute arbitrary code with SYSTEM privileges.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/80305/PT-2008-09.txt

Source: https://packetstormsecurity.com/files/80305/Microsoft-Windows-MSMQ-Privilege-Escalation.html

Exit mobile version