mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-07 19:16:22 +00:00
25 lines
1.1 KiB
Markdown
25 lines
1.1 KiB
Markdown
![]() |
### [CVE-2019-9729](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-9729)
|
||
|

|
||
|

|
||
|

|
||
|
|
||
|
### Description
|
||
|
|
||
|
In Shanda MapleStory Online V160, the SdoKeyCrypt.sys driver allows privilege escalation to NT AUTHORITY\SYSTEM because of not validating the IOCtl 0x8000c01c input value, leading to an integer signedness error and a heap-based buffer underflow.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://github.com/DoubleLabyrinth/SdoKeyCrypt-sys-local-privilege-elevation
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/0xT11/CVE-POC
|
||
|
- https://github.com/HyperSine/SdoKeyCrypt-sys-local-privilege-elevation
|
||
|
- https://github.com/NetW0rK1le3r/awesome-hacking-lists
|
||
|
- https://github.com/hectorgie/PoC-in-GitHub
|
||
|
- https://github.com/readloud/Awesome-Stars
|
||
|
- https://github.com/recozone/HyperSine
|
||
|
- https://github.com/taielab/awesome-hacking-lists
|
||
|
- https://github.com/xbl2022/awesome-hacking-lists
|
||
|
|