Vulnerability Description
Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymbolicLinkObject function to create a symbolic link to (1) \Device\PhysicalMemory or (2) to a drive letter using the subst command.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pedestalsoftware | Integrity Protection Driver | <= 1.3 |
Related Weaknesses (CWE)
References
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0017.htmlBroken LinkPatch
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0018.htmlBroken LinkExploitPatch
- http://secunia.com/advisories/7816Broken LinkPatchVendor Advisory
- http://www.phrack.org/show.php?p=59&a=16Broken Link
- http://www.securityfocus.com/bid/6511Broken LinkPatchThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10979Third Party AdvisoryVDB Entry
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0017.htmlBroken LinkPatch
- http://archives.neohapsis.com/archives/bugtraq/2003-01/0018.htmlBroken LinkExploitPatch
- http://secunia.com/advisories/7816Broken LinkPatchVendor Advisory
- http://www.phrack.org/show.php?p=59&a=16Broken Link
- http://www.securityfocus.com/bid/6511Broken LinkPatchThird Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/10979Third Party AdvisoryVDB Entry
FAQ
What is CVE-2003-1233?
CVE-2003-1233 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Pedestal Software Integrity Protection Driver (IPD) 1.3 and earlier allows privileged attackers, such as rootkits, to bypass file access restrictions to the Windows kernel by using the NtCreateSymboli...
How severe is CVE-2003-1233?
CVE-2003-1233 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2003-1233?
Check the references section above for vendor advisories and patch information. Affected products include: Pedestalsoftware Integrity Protection Driver.