CVE-2015-6098
Windows Vista/Server 2008/7 NDIS Buffer Overflow Local Privilege Escalation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-6098. PoCs published by Nils Sommer.
AI-analyzed exploit summary This exploit triggers a pool buffer overflow in an ioctl handler in Windows 7 32-bit, leading to a system crash. The vulnerability is in ndis.sys, netio.sys, or ntoskrnl, and the PoC is provided as a binary download.
Description
Buffer overflow in the Network Driver Interface Standard (NDIS) implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allows local users to gain privileges via a crafted application, aka "Windows NDIS Elevation of Privilege Vulnerability."
Exploits (1)
This exploit triggers a pool buffer overflow in an ioctl handler in Windows 7 32-bit, leading to a system crash. The vulnerability is in ndis.sys, netio.sys, or ntoskrnl, and the PoC is provided as a binary download.