Home / bulletins MS08-002 – Important: Vulnerability in LSASS Could Allow Local Elevation of Privilege (943485) - Version:1.0
Posted on 18 February 2008
Severity Rating: Important - Revision Note: Bulletin published. Summary: This important update resolves a privately reported vulnerability in Microsoft Windows Local Security Authority Subsystem Service (LSASS). The vulnerability could allow an attacker to run arbitrary code with elevated privileges. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.