Aerosol Posted January 30, 2015 Report Posted January 30, 2015 Here we will be looking a kernel level privilege escalation vulnerabilityCVE-2014-4113. The vulnerabilityis exploited by creating tagWND structure at NULL page (0x00000000).We’ll seehere whycontrol istransferred tothe shellcodeand the reason themalicioustagWND structure is the crafted the way it is.User-Mode CodeThe exe first tries to determine the OS it is running on and stores the following data in the variablebased on the OS version and build:Windows Xp Sp20c8Windows Xp Sp112cWindows Xp Sp30d8Windows Server 20080e0windows 7/ Windows Server 2008 R20f8Read more: http://www.exploit-db.com/wp-content/themes/exploit/docs/35937.pdf Quote