CVE-2006-6952
Summary
| CVE | CVE-2006-6952 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-01-24 23:28:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local users to gain privileges by using certain privileged IOCTLs to modify callback function pointers. |
Risk And Classification
Primary CVSS: v2.0 7.2 from [email protected]
AV:L/AC:L/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
LocalAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:L/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ca | Host-based Intrusion Prevention System | core_6.5.4.31 | All | All | All |
| Application | Ca | Host-based Intrusion Prevention System | firewall_6.5.4.10 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 401 Unauthorized | af854a3a-2127-422b-91ae-364da2661108 | www.reversemode.com | |
| CA Personal Firewall HIPS engine multiple privilege escalation vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www3.ca.com | |
| www.osvdb.org/30498 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | |
| Computer Associates Multiple Products Drivers Multiple Local Privilege Escalation Vulenrabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Exploit |
| www.osvdb.org/30497 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CA Personal Firewall Multiple Privilege Escalation Vulnerabilities - CA | af854a3a-2127-422b-91ae-364da2661108 | www3.ca.com | |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | |
| CA Personal Firewall HIPS Drivers Privilege Escalation - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.