Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
BID:33561
Info
Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
| Bugtraq ID: | 33561 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 02 2009 12:00AM |
| Updated: | Feb 12 2009 03:18PM |
| Credit: | Ruben Santamarta of Wintercore. |
| Vulnerable: |
Kaspersky Anti-Virus for Windows Workstation 6.0 Kaspersky Anti-Virus 7.0 |
| Not Vulnerable: | |
Discussion
Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
Multiple Kaspersky products are prone to a local privilege-escalation vulnerability because the applications fail to perform adequate boundary checks on user-supplied data.
A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will result in the complete compromise of affected computers. Failed exploit attempts will result in a denial-of-service condition.
This issue affects versions in the following product groups:
Kaspersky AV 2008
Kaspersky AV for WorkStations 6.0
Multiple Kaspersky products are prone to a local privilege-escalation vulnerability because the applications fail to perform adequate boundary checks on user-supplied data.
A local attacker can exploit this issue to execute arbitrary code with SYSTEM-level privileges. Successfully exploiting this issue will result in the complete compromise of affected computers. Failed exploit attempts will result in a denial-of-service condition.
This issue affects versions in the following product groups:
Kaspersky AV 2008
Kaspersky AV for WorkStations 6.0
Exploit / POC
Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability
References:
References: