CVE-2003-1233
Last modified
CVE-2003-1233 is a critical-severity vulnerability rated 9.8/10 on the CVSS scale. Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymbolicLinkObject function to create a symbolic link to (1) \Device\PhysicalMemory or (2) to a drive letter using the subst command.. EPSS estimates a 1.63% chance of exploitation in the next 30 days.
Description
Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymbolicLinkObject function to create a symbolic link to (1) \Device\PhysicalMemory or (2) to a drive letter using the subst command.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Pedestalsoftware | Integrity Protection Driver | <= 1.3 |
References
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0017.htmlBroken Link, Patch
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0018.htmlBroken Link, Exploit, Patch
- http://secunia.com/advisories/7816Broken Link, Patch, Vendor Advisory
- http://www.phrack.org/show.php?p=59&a=16Broken Link
- http://www.securityfocus.com/bid/6511Broken Link, Patch, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10979Third Party Advisory, VDB Entry
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0017.htmlBroken Link, Patch
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0018.htmlBroken Link, Exploit, Patch
- http://secunia.com/advisories/7816Broken Link, Patch, Vendor Advisory
- http://www.phrack.org/show.php?p=59&a=16Broken Link
- http://www.securityfocus.com/bid/6511Broken Link, Patch, Third Party Advisory, VDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10979Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-1233?
How severe is CVE-2003-1233?
How do I fix CVE-2003-1233?
Are you affected by CVE-2003-1233?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
