02-11-2021 , 06:25 PM
Quote:Microsoft has fixed a bug that could allow a threat actor to create specially crafted downloads that crash Windows 10 simply by opening the folder where they are downloaded.
Last month, we reported on a bug in the Windows 10 console multiplexer driver, condrv.sys, that caused a blue screen of death crash (BSOD) when attempting to connect to the following path.
Code:\\.\globalroot\device\condrv\kernelconnect
When connecting to the device, developers are meant to pass the 'attach' extended attribute. However, a lack of error checking allowed you to access the path without the attribute and crash Windows.
More info HERE