[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Reversemode Paper] Exploiting WDM Audio Drivers
For those researchers who are interested in the driver security and also
for driver writers, the paper "Exploiting WDM Audio Drivers" has been
This paper explains an attack vector inherent to certain WDM audio
drivers running on Windows Vista, XP, 2000 and 2003. Successful
exploitation could lead to local escalation of privileges.
The paper also covers the interesting case of es1371mp.sys, a vulnerable
WDM driver that can be automatically installed through Windows Update,
on systems with Ensoniq PCI 1371 based SoundCards (Certain VMware
products emulate a soundcard of this type).
It can be downloaded at :
Additionally, an exploit(es1371mp.sys)/Vuln-finder K-plugin for
Kartoffel is available at :