MS10-069: Vulnerability in Windows Client/Server Runtime Subsystem Could Allow Elevation of Privilege (2121546)
Medium Nessus Plugin ID 49227
SynopsisUsers can elevate their privileges on the remote host.
DescriptionThe remote host allows elevation of privileges in its Windows Client/Server run-time subsystem (CSRSS) because of the way CSRSS assigns memory-specific user transactions. An attacker might exploit this to run arbitrary code in the security context of the local system.
SolutionMicrosoft has released a set of patches for Windows XP and 2003.