CVE-2008-4036

HIGH

Microsoft Windows XP-Server 2008 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that triggers an erroneous decrement of a variable, related to validation of parameters for Virtual Address Descriptors (VADs) and a "memory allocation mapping error," aka "Virtual Address Descriptor Elevation of Privilege Vulnerability."

References (10)

Core 10
Core References
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/32251
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=122479227205998&w=2
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2815
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1021051
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45571
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31675
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA08-288A.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5343
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45572

Scores

CVSS v3 8.4
EPSS 0.0153
EPSS Percentile 71.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-189 CWE-190
Status published
Products (5)
microsoft/windows_server_2003 (4 CPE variants)
microsoft/windows_server_2008 (4 CPE variants)
microsoft/windows_vista (3 CPE variants)
microsoft/windows_vista sp1
microsoft/windows_xp (4 CPE variants)
Published Oct 15, 2008
Tracked Since Feb 18, 2026