CSRSS facename exploit Update 2

This module exploits a stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process.

Allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value.



This update fixes a bug that occurs when this module is launched by RPT, with a newer Windows platform such as Windows Seven as target.
Exploit Type - Old
Exploits/Local
Exploit Platform
Exploit Type
Product Name