CVE-2008-3636
Summary
| CVE | CVE-2008-3636 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2008-09-11 01:13:10 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Integer overflow in the IopfCompleteRequest API in the kernel in Microsoft Windows 2000, XP, Server 2003, and Vista allows context-dependent attackers to gain privileges. NOTE: this issue was originally reported for GEARAspiWDM.sys 2.0.7.5 in Gear Software CD DVD Filter driver before 4.001.7, as used in other products including Apple iTunes and multiple Symantec and Norton products, which allows local users to gain privileges via repeated IoAttachDevice IOCTL calls to \\.\GEARAspiWDMDevice in this GEARAspiWDM.sys. However, the root cause is the integer overflow in the API call itself. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:L/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apple | Itunes | 1.0 | All | windows | All |
| Application | Apple | Itunes | 1.1.1 | All | windows | All |
| Application | Apple | Itunes | 1.1.2 | All | windows | All |
| Application | Apple | Itunes | 2.0 | All | windows | All |
| Application | Apple | Itunes | 2.0.1 | All | windows | All |
| Application | Apple | Itunes | 2.0.2 | All | windows | All |
| Application | Apple | Itunes | 2.0.3 | All | windows | All |
| Application | Apple | Itunes | 2.0.4 | All | windows | All |
| Application | Apple | Itunes | 3.0 | All | windows | All |
| Application | Apple | Itunes | 3.0.1 | All | windows | All |
| Application | Apple | Itunes | 4.0 | All | windows | All |
| Application | Apple | Itunes | 4.0.1 | All | windows | All |
| Application | Apple | Itunes | 4.1 | All | windows | All |
| Application | Apple | Itunes | 4.2 | All | windows | All |
| Application | Apple | Itunes | 4.2.72 | All | windows | All |
| Application | Apple | Itunes | 4.5 | All | windows | All |
| Application | Apple | Itunes | 4.6 | All | windows | All |
| Application | Apple | Itunes | 4.7 | All | windows | All |
| Application | Apple | Itunes | 4.7.1 | All | windows | All |
| Application | Apple | Itunes | 4.7.1.30 | All | windows | All |
| Application | Apple | Itunes | 4.8 | All | windows | All |
| Application | Apple | Itunes | 4.9 | All | windows | All |
| Application | Apple | Itunes | 5.0 | All | windows | All |
| Application | Apple | Itunes | 5.0.1 | All | windows | All |
| Application | Apple | Itunes | 6.0 | All | windows | All |
| Application | Apple | Itunes | 6.0.1 | All | windows | All |
| Application | Apple | Itunes | 6.0.2 | All | windows | All |
| Application | Apple | Itunes | 6.0.3 | All | windows | All |
| Application | Apple | Itunes | 6.0.4 | All | windows | All |
| Application | Apple | Itunes | 6.0.4.2 | All | windows | All |
| Application | Apple | Itunes | 6.0.5 | All | windows | All |
| Application | Apple | Itunes | 7.0.2 | All | windows | All |
| Application | Apple | Itunes | 7.3.2 | All | windows | All |
| Application | Apple | Itunes | 7.4 | All | windows | All |
| Application | Apple | Itunes | 7.4.1 | All | windows | All |
| Application | Apple | Itunes | 7.4.2 | All | windows | All |
| Application | Apple | Itunes | 7.4.3 | All | windows | All |
| Application | Apple | Itunes | 7.5 | All | windows | All |
| Application | Apple | Itunes | 7.6 | All | windows | All |
| Application | Apple | Itunes | 7.6.2 | All | windows | All |
| Application | Apple | Itunes | 7.7 | All | windows | All |
| Application | Apple | Itunes | 7.7.1 | All | windows | All |
| Application | Apple | Itunes | All | All | windows | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| About the security content of iTunes 8.0 | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | |
| 404 Not Found | af854a3a-2127-422b-91ae-364da2661108 | www.symantec.com | |
| APPLE-SA-2009-09-09 iTunes 8.0 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | |
| GEAR Software CD DVD Filter Driver 'GEARAspiWDM.sys' Local Privilege Escalation Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch |
| 404 Not Found | af854a3a-2127-422b-91ae-364da2661108 | www.wintercore.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| iTunes Windows Driver Integer Overflow Lets Local Users Gain Elevated Privileges - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | |
| www.gearsoftware.com/support/GEARAspi%20Security%20Information.pdf | af854a3a-2127-422b-91ae-364da2661108 | www.gearsoftware.com | |
| US-CERT Vulnerability Note VU#146896 | af854a3a-2127-422b-91ae-364da2661108 | www.kb.cert.org | US Government Resource |
| Symantec LiveState Recovery Bug in 'GEARAspiWDM.Sys' Driver Lets Local Users Gain Elevated Privileges - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Norton Ghost Bug in 'GEARAspiWDM.Sys' Driver Lets Local Users Gain Elevated Privileges - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| Symantec BackupExec System Recovery Bug in 'GEARAspiWDM.Sys' Driver Lets Local Users Gain Elevated Privileges - SecurityTracker | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| Symantec Security Center | af854a3a-2127-422b-91ae-364da2661108 | securityresponse.symantec.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.