Title : WinPcap NPF.SYS "bpf_filter_init()" Arbitrary Array Indexing Vulnerability VUPEN ID : VUPEN/ADV-2007-3835 CVE ID : CVE-2007-5756
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-11-13
Technical Description
A vulnerability has been identified in WinPcap, which could be exploited by local attackers to obtain elevated privileges. This issue is caused by an invalid array indexing within the "bpf_filter_init()" function, which could be exploited by malicious users to cause a memory corruption and execute arbitrary code with kernel privileges via specially crafted IOCTL requests.