Get a Pentest and security assessment of your IT network.

Advisories

PGP Desktop Pgpdisk.sys / Pgpwded.sys Vulnerabilities

Positive Technologies Research Team has discovered several vulnerabilities in PGP Desktop version 9.9.0 build 397.The IOCTL handler in pgpdisk.sys does not properly validate buffer data associated with the Irp object, which allows local users to crash the system. The IOCTL handler in pgpwded.sys does not properly validate buffer data associated with the Irp object, which allows local users to crash the system or execute arbitrary code with SYSTEM privileges.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/76640/PT-2009-01.txt

Source: https://packetstormsecurity.com/files/76640/PGP-Desktop-Pgpdisk.sys-Pgpwded.sys-Vulnerabilities.html

Related posts
Advisories

Secunia Security Advisory 15646

Advisories

Secunia Security Advisory 18761

Advisories

deluxeBBflaws.txt

Advisories

Mandriva Linux Security Advisory 2007.061