Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-1138

Overview

Vulnerability Score 4.9 4.9
CVE Id CVE-2008-1138
Last Modified 07 Mar 2011 10:06:00
Published 04 Mar 2008 03:44:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2008-1138

Summary

DLMFENC.sys 1.0.0.26 in DESlock+ 3.2.6 and earlier allows local users to cause a denial of service (system crash) via a certain ZERO_MEM DLMFENC_IOCTL request to \\.\DLKPFSD_Device, aka the "ring0 link list zero" vulnerability.

Vulnerable Systems

Application

  • Deslock 3.2.6


References

SECUNIA - 29005

VUPEN - ADV-2008-0597

MILW0RM - 5142

XF - deslock-dlmfencsys-dos(41204)


Last Updated: 27 May 2016 10:47:02