Windows Kernel Pool nt!NtQueryObject Memory Disclosure
Posted by deepcore on October 18, 2017 – 3:07 pm
It was discovered that the nt!NtQueryObject syscall handler discloses portions of uninitialized pool memory to user-mode clients when certain conditions are met.
Post a reply
You must be logged in to post a comment.