Security Advisory

CVE-2007-1537

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-03-20 22:00:00
Last updated 2024-08-07 12:59:08
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

\Device\NdisTapi (NDISTAPI.sys) in Microsoft Windows XP SP2 and 2003 SP1 uses weak permissions, which allows local users to write to the device and cause a denial of service, as demonstrated by using an IRQL to acquire a spinlock on paged memory via the NdisTapiDispatch function.