MS Windows XP/2003 AFD.sys Privilege Escalation Exploit (K-plugin)

Hi,
I have just uploaded a k-plugin for Kartoffel, which exploits a flaw
patched in the recent MS08-066 bulletin.
[url]http://kartoffel.reversemode.com/downloads.php[/url]
backup: [url]http://milw0rm.com/sploits/2008-afd_plugin.zip[/url]

For those researchers interesting in digging a little bit more into this
flaw, just take a look at afd!AfdGetRemoteAddress and/or check this out
[url]http://blogs.technet.com/swi/archive/2008/10/14/ms08-066-how-to-correctly-validate-and-capture-user-mode-data.aspx[/url]
Regards,
Rubén.
# milw0rm.com [2008-10-15]