Описание
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
Ссылки
- Third Party AdvisoryVDB Entry
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:panda_security:panda_antivirus_pro_2015:1.0.0.13:*:*:*:*:*:*:*
cpe:2.3:a:panda_security:panda_global_protection_2015:1.0.0.13:*:*:*:*:*:*:*
cpe:2.3:a:panda_security:panda_gold_protection_2015:1.0.0.13:*:*:*:*:*:*:*
cpe:2.3:a:panda_security:panda_internet_security_2015:1.0.0.13:*:*:*:*:*:*:*
EPSS
Процентиль: 29%
0.00105
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-119
Связанные уязвимости
CVSS3: 7.8
github
больше 3 лет назад
Heap-based buffer overflow in Panda Security Kernel Memory Access Driver 1.0.0.13 allows attackers to execute arbitrary code with kernel privileges via a crafted size input for allocated kernel paged pool and allocated non-paged pool buffers.
EPSS
Процентиль: 29%
0.00105
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-119