Windows Kernel Pool nt!NtQueryObject Memory Disclosure

It was discovered that the nt!NtQueryObject syscall handler discloses portions of uninitialized pool memory to user-mode clients when certain conditions are met.

Leave a Reply