Vulnerabilities > CVE-2014-4115 - Resource Management Errors vulnerability in Microsoft products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
fastfat.sys (aka the FASTFAT driver) in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Vista SP2, and Server 2008 SP2 does not properly allocate memory, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (reserved-memory write) by connecting a crafted USB device, aka "Microsoft Windows Disk Partition Driver Elevation of Privilege Vulnerability."
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 3 |
Common Weakness Enumeration (CWE)
Msbulletin
bulletin_id | MS14-063 |
bulletin_url | |
date | 2014-10-14T00:00:00 |
impact | Elevation of Privilege |
knowledgebase_id | 2998579 |
knowledgebase_url | |
severity | Important |
title | Vulnerability in FAT32 Disk Partition Driver Could Allow Elevation of Privilege |
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS14-063.NASL |
description | The remote Windows host is affected by a privilege escalation vulnerability that is due to the way the Windows FASTFAT system driver interacts with FAT32 disk partitions. An attacker can exploit this vulnerability to execute arbitrary code with elevated privileges. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 78439 |
published | 2014-10-15 |
reporter | This script is Copyright (C) 2014-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/78439 |
title | MS14-063: Vulnerability in FAT32 Disk Partition Driver Could Allow Elevation of Privilege (2998579) |
Talos
id | VRT-2014-0301 |
last seen | 2019-05-29 |
published | 2014-03-07 |
reporter | Talos Intelligence |
source | http://www.talosintelligence.com/vulnerability_reports/VRT-2014-0301 |
title | Microsoft Windows FastFAT NumberOfFATs Buffer Overflow Vulnerability |