CVE-2007-5761
CVE-2007-5761
The NantSys device 5.0.0.115 in Motorola netOctopus 5.1.2 build 1011 has weak permissions for the \\.\NantSys device interface (nantsys.sys), which allows local users to gain privileges or cause a denial of service (system crash), as demonstrated by modifying the SYSENTER_EIP_MSR CPU Model Specific Register (MSR) value.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=636http://secunia.com/advisories/28366http://securitytracker.com/id?1019161https://exchange.xforce.ibmcloud.com/vulnerabilities/39503http://www.netopia.com/support/software/technotes/netoctopus/Removing_the_nantsys_Driver.pdfhttp://www.securityfocus.com/bid/27175http://www.vupen.com/english/advisories/2008/0062