The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Security Bulletin MS03-025: Flaw in Windows Message Handling through Utility Manager Could Enable Privilege Elevation (Q822679)
Time: 19:05 EST/00:05 GMT | News Source: ActiveWin.com | Posted By: Todd Richardson

There is a flaw in the way that Utility Manager handles Windows messages. Windows messages provide a way for interactive processes to react to user events (for example, keystrokes or mouse movements) and communicate with other interactive processes. A security vulnerability results because the control that provides the list of accessibility options to the user does not properly validate Windows messages sent to it. It's possible for one process in the interactive desktop to use a specific Windows message to cause the Utility Manager process to execute a callback function at the address of its choice. Because the Utility Manager process runs at higher privileges than the first process, this would provide the first process with a way of exercising those higher privileges.

Write Comment
Return to News

  Displaying 676 through 676 of 676
Prev | First
  The time now is 9:24:08 AM ET.
Any comment problems? E-mail us
#676 By 4240821 (45.192.45.37) at 11/12/2025 9:23:36 AM
https://www.pillowfort.social/posts/6473887
https://www.pillowfort.social/posts/6473823
https://www.pillowfort.social/posts/6473670
https://www.pillowfort.social/posts/6473570
https://www.pillowfort.social/posts/6473490
https://www.pillowfort.social/posts/6473415
https://www.pillowfort.social/posts/6473328
https://www.pillowfort.social/posts/6473045
https://www.pillowfort.social/posts/6472919
https://www.pillowfort.social/posts/6472811

Write Comment
Return to News
  Displaying 676 through 676 of 676
Prev | First
  The time now is 9:24:08 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *