Windows Kernel Registry Hive Loading nt!RtlEqualSid Out-Of-Bounds Read

A Windows kernel crash can occur in the nt!RtlEqualSid function invoked through nt!SeAccessCheck by nt!CmpCheckSecurityCellAccess while loading corrupted registry hive files.

Leave a Reply