A vulnerability has been identified in Microsoft Windows, which could be exploited by local attackers to gain elevated privileges. This issue is caused due to the kernel not properly handling certain exceptions when setting up a VDM (Virtual DOS Machine) context, which allow malicious users to gain kernel privileges by setting up a specially crafted "VDM_TIB" in their "TEB" and reach the "Ki386BiosCallReturnAddress()" function via the #GP trap handler (nt!KiTrap0D).
VUPEN confirmed the vulnerability on fully patched Windows XP SP3 and Windows Server 2008 systems.