Security Advisory

CVE-2011-1870

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-07-13 23:00:00
Last updated 2024-08-06 22:45:59
Assigner microsoft
State PUBLISHED

Description

Integer overflow in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, and Windows Server 2003 SP2, allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted application that triggers an incorrect memory assignment for a user transaction, aka "CSRSS Local EOP SrvWriteConsoleOutputString Vulnerability."