Oval Definition:oval:org.mitre.oval:def:14958
Revision Date:2012-04-02Version:22
Title:Ancillary Function Driver Elevation of Privilege Vulnerability
Description:afd.sys in the Ancillary Function Driver in Microsoft Windows Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2012-0149
Platform(s):Microsoft Windows Server 2003
Product(s):
Definition Synopsis
  • Server 2003 x86/x64/ia64 SP2
  • Microsoft Windows Server 2003 SP2 (x86) is installed
  • OR Microsoft Windows Server 2003 SP2 (x64) is installed
  • OR Microsoft Windows Server 2003 (ia64) SP2 is installed
  • AND The version of afd.sys is less than 5.2.3790.4949
  • BACK