| Vulnerability Name: | CVE-2013-3956 (CCN-84580) | ||||||||
| Assigned: | 2013-05-28 | ||||||||
| Published: | 2013-05-28 | ||||||||
| Updated: | 2013-08-22 | ||||||||
| Summary: | The NICM.SYS kernel driver 3.1.11.0 in Novell Client 4.91 SP5 on Windows XP and Windows Server 2003; Novell Client 2 SP2 on Windows Vista and Windows Server 2008; and Novell Client 2 SP3 on Windows Server 2008 R2, Windows 7, Windows 8, and Windows Server 2012 allows local users to gain privileges via a crafted 0x143B6B IOCTL call. | ||||||||
| CVSS v3 Severity: | 9.3 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
| CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.9 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
5.9 Medium (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-264 | ||||||||
| Vulnerability Consequences: | Gain Privileges | ||||||||
| References: | Source: MITRE Type: CNA CVE-2013-3956 Source: MISC Type: Exploit http://pastebin.com/GB4iiEwR Source: CCN Type: SA53605 Novell Client NICM.SYS NICM_IOCTL_REQUEST_REPLY Handling Privilege Escalation Vulnerability Source: EXPLOIT-DB Type: UNKNOWN 26452 Source: EXPLOIT-DB Type: UNKNOWN 27191 Source: CCN Type: Novell Document ID 7012497 May 10th, 2013 Novell Client for Windows Zero Day disclosures Source: CONFIRM Type: Vendor Advisory http://www.novell.com/support/kb/doc.php?id=7012497 Source: CCN Type: BID-60203 Novell Client for Windows 'nicm.sys' Local Privilege Escalation Vulnerability Source: XF Type: UNKNOWN novell-nicm-priv-esc(84580) Source: CCN Type: Packet Storm Security [06-26-2013] Novell Client 2 SP3 nicm.sys Local Privilege Escalation Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [06-26-2013] Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [07-29-2013] | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration 3: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||