Three security researchers, Marius Wachtler, Michael Burgbacher, and Carson Hounshell recently found a vulnerability in Windows Vista (with or without SP1) that could allow an attacker to remotely take control of a PC.
Craggs and Unterleitner work for Phion AG, the security company that published details of the vulnerability. The problem, which is in the Device IO Control, affects both 32-bit and 64-bit editions of Vista (XP is unaffected). The problem can be exploited in two different ways to cause a buffer overflow that can corrupt the memory of the operating system's kernel.
|