DOCUMENTS Windows Local Privilege Escalation CVE-2024-30088
by n3od4y - 07-08-24, 10:56 AM
#1
When performing copy the SecurityAttributesList, the kernel setup the list of SecurityAttribute's structure *directly* to the user supplied pointer. After that, it calls to RtlCopyUnicodeString and AuthzBasepCopyoutInternalSecurityAttributeValues functions to copy out name and value of the SecurityAttribute structure, leading to multiple TOCTOU in this function

   

Hidden Content
You must register or login to view this content.
Reply
#2
awoseom
Reply
#3
thanks
Reply
#4
one kiss only takes falling love wiht me ahahhaha
Reply
#5
thanks
Reply
#6
thanks
Reply
#7
thanks
Reply
#8
Thnks!
Reply
#9
thanks as fuck for this !

thanks as fuck for this !
Reply
#10
How amazing
Reply


Forum Jump:


 Users browsing this thread: 1 Guest(s)