vendor:
Kill Utility
by:
HYP3RLINX
3,3
CVSS
LOW
Buffer Overflow
119
CWE
Product Name: Kill Utility
Affected Version From: 6.3.9600.17298
Affected Version To: 6.3.9600.17298
Patch Exists: NO
Related CWE: N/A
CPE: a:microsoft:kill_utility
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2016
Microsoft Process Kill Utility Buffer Overflow
The Kill tool (kill.exe), a tool used to terminate a process, part of the WinDbg program, is vulnerable to a SEH Buffer Overflow vulnerability. An attacker can exploit this vulnerability by sending a specially crafted input of about 512 bytes to the kill.exe program, which will cause a buffer overflow and overwrite the SEH handler. This can be used to execute arbitrary code.
Mitigation:
Microsoft has not released a patch for this vulnerability. Users should avoid using the kill.exe program.