NT IOCTL Console DoS Vulnerability

In Windows NT, device driver services are requested through objects known as IOCTLs. The keyboard and mouse IOCTLs can be invoked by user-level programs. By using specific, legitimate calls malicious code could disable the keyboard and mouse, forcing a reboot to re-establish their usability. On NT Terminal Server, the keyboard and mouse on the remote server could be disabled, forcing a reboot of that machine.


 

Privacy Statement
Copyright 2010, SecurityFocus