Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

[CVE-2023-36802] Chaining N-days to Compromise All: Part 6 — Windows Kernel LPE: Get SYSTEM

Summary

Final part of the N-day chain series: how CVE-2023-36802, a type-confusion flaw in the mskssrv.sys driver, was analysed and exploited to raise VMware privileges to SYSTEM on the host.
Published
Collected

original ↗

Related coverage

back