Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
BID:32269
Info
Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
| Bugtraq ID: | 32269 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-6962 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 12 2008 12:00AM |
| Updated: | May 07 2015 05:21PM |
| Credit: | Sebastien Renaud of FrSIRT |
| Vulnerable: |
AVIRA Premium Security Suite 0 AVIRA AntiVir Professional 0 AVIRA AntiVir Premium 0 AVIRA AntiVir PersonalEdition Premium Build 228 AVIRA AntiVir PersonalEdition Classic Build 180 AVIRA AntiVir Personal 0 AVIRA Antivir 6.35.00.00 |
| Not Vulnerable: | |
Discussion
Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
Multiple Avira products are prone to a local buffer-overflow vulnerability because they fail to adequately validate user-supplied input.
A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges, which may facilitate a complete compromise of the affected computer.
The following applications are vulnerable:
AntiVir Premium
Security Suite
AntiVir Professional
AntiVir Personal
Multiple Avira products are prone to a local buffer-overflow vulnerability because they fail to adequately validate user-supplied input.
A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges, which may facilitate a complete compromise of the affected computer.
The following applications are vulnerable:
AntiVir Premium
Security Suite
AntiVir Professional
AntiVir Personal
Exploit / POC
Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
FrSIRT has developed a working exploit. This exploit is not otherwise publicly available or known to be circulating in the wild.
FrSIRT has developed a working exploit. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
Solution:
Reportedly, vendor updates are available. Symantec has not been able to confirm this information.
Solution:
Reportedly, vendor updates are available. Symantec has not been able to confirm this information.
References
Multiple Avira Products Driver IOCTL Request Local Buffer Overflow Vulnerabilty
References:
References: