Vulnerabilities > CVE-2008-4362 - Resource Management Errors vulnerability in Deslock 3.2.7

047910
CVSS 4.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
local
low complexity
deslock
CWE-399
exploit available

Summary

The Virtual Token driver (vdlptokn.sys) 1.0.2.43 in DESlock+ 3.2.7 allows local users to cause a denial of service (system crash) via a crafted IOCTL request to \Device\DLPTokenWalter0.

Vulnerable Configurations

Part Description Count
Application
Deslock
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionDESlock+ 3.2.7 (vdlptokn.sys) Local Denial of Service Exploit. CVE-2008-4362. Dos exploit for windows platform
fileexploits/windows/dos/6515.c
idEDB-ID:6515
last seen2016-02-01
modified2008-09-21
platformwindows
port
published2008-09-21
reporterNT Internals
sourcehttps://www.exploit-db.com/download/6515/
titleDESlock+ 3.2.7 vdlptokn.sys Local Denial of Service Exploit
typedos