CVE-2008-4036
HIGHMicrosoft Windows XP-Server 2008 - Privilege Escalation
Title source: llmDescription
Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that triggers an erroneous decrement of a variable, related to validation of parameters for Virtual Address Descriptors (VADs) and a "memory allocation mapping error," aka "Virtual Address Descriptor Elevation of Privilege Vulnerability."
References (10)
Core 10
Core References
Patch, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/32251
Mailing List vendor-advisory
x_refsource_hp
http://marc.info/?l=bugtraq&m=122479227205998&w=2
Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2815
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1021051
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-064
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45571
Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/31675
US Government Resource third-party-advisory
x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA08-288A.html
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5343
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45572
Scores
CVSS v3
8.4
EPSS
0.0153
EPSS Percentile
71.7%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-189
CWE-190
Status
published
Products (5)
microsoft/windows_server_2003
(4 CPE variants)
microsoft/windows_server_2008
(4 CPE variants)
microsoft/windows_vista
(3 CPE variants)
microsoft/windows_vista
sp1
microsoft/windows_xp
(4 CPE variants)
Published
Oct 15, 2008
Tracked Since
Feb 18, 2026