Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r59q-696w-6whc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the NtOpenSection kernel SSDT hook. NOTE: the NtCreateMutant and NtOpenEvent function hooks are already covered by CVE-2007-1793.

Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the NtOpenSection kernel SSDT hook. NOTE: the NtCreateMutant and NtOpenEvent function hooks are already covered by CVE-2007-1793.

EPSS

Процентиль: 18%
0.00056
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 18 лет назад

Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the NtOpenSection kernel SSDT hook. NOTE: the NtCreateMutant and NtOpenEvent function hooks are already covered by CVE-2007-1793.

EPSS

Процентиль: 18%
0.00056
Низкий

Дефекты

CWE-20