Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:9777
HistorySep 26, 2005 - 12:00 a.m.

bsod in win32k.sys(Multi-User Win32 Driver)

2005-09-2600:00:00
vulners.com
61

Hello vuln,
OS:
Microsoft Windows XP, SP2, other not tested

    VULNERABILITY:
    file   : win32k.sys
    version     : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
    description : Multi-User Win32 Driver
    author      : ******(6star aka mg)
    
    BUG DESCRIPTION:
    When you try
    
    HOW TO CHECK:
    1. Click on Desktop to call Context Menu.
    2. Then Select Sub Menu.
    3. Press CTRL
    4. See BSOD win win32k.sys at ADDR: BF920D1F
    
    EXAMPLE:
     1.Arrange Icons by
     2.Name
     3.Press CTRL
     4. :)
    
    .BF920D10: C8FFEB12                     enter       0EBFF,012
    .BF920D14: 8B460C                       mov         eax,[esi][0C]
    .BF920D17: 093E                         or          [esi],edi
    .BF920D19: 8B80A4000000                 mov         eax,[eax][000000A4]
    .BF920D1F: 80480110                     or          b,[eax][01],010        <<-- BUG HERE
    .BF920D23: 33C0                         xor         eax,eax
    .BF920D25: 40                           inc         eax
    .BF920D26: 5F                           pop         edi
    .BF920D27: 5E                           pop         esi
    .BF920D28: 5D                           pop         ebp
    .BF920D29: C20400                       retn        00004


Best regards,
mail mailto:[email protected]