There exist several vulnerabilities in one of Windows XP kernel’s native API functions which allow any user with the SeDebugPrivilege privilege to execute arbitrary code in kernel mode, and read from and write to any memory address, including kernel memory. Tested against Windows XP Pro SP1.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32717/XPkern.txt
Source: https://packetstormsecurity.com/files/32717/XPkern.txt.html

