Microsoft Windows CSRSS SxSSrv Cached Manifest Privilege Escalation

On Microsoft Windows, the SxS manifest cache in CSRSS uses a weak key allowing an attacker to fill a cache entry for a system binary leading to elevation of privilege.

Leave a Reply