The Virtual DOS Machine (VDM) in the Windows Kernel in Microsoft Windows NT 4.0; 2000 SP4; XP SP2; Server 2003, 2003 SP1, and 2003 SP2; and Windows Vista before June 2006; uses insecure permissions (PAGE_READWRITE) for a physical memory view, which allows local users to gain privileges by modifying the zero page during a race condition before the view is unmapped.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Windows_2000 | Microsoft | * | * |
Windows_2003_server | Microsoft | gold (including) | gold (including) |
Windows_2003_server | Microsoft | sp1 (including) | sp1 (including) |
Windows_2003_server | Microsoft | sp2 (including) | sp2 (including) |
Windows_xp | Microsoft | * | * |