Multiple Vendor Argument Switch Security Bypass Vulnerabilities
BID:39924
Info
Multiple Vendor Argument Switch Security Bypass Vulnerabilities
| Bugtraq ID: | 39924 |
| Class: | Race Condition Error |
| CVE: |
CVE-2010-5150 CVE-2010-5157 |
| Remote: | No |
| Local: | Yes |
| Published: | May 05 2010 12:00AM |
| Updated: | Apr 13 2015 09:02PM |
| Credit: | matousec.com |
| Vulnerable: |
Zone Labs ZoneAlarm Extreme Security 9.1.507.000 Webroot Internet Security Essentials 6.1.0.145 VirusBuster Internet Security Suite 3.2 VirusBlokAda Vba32 Personal 3.12.12.4 Trend Micro Internet Security Pro 2010 Symantec Norton Internet Security 2010 0 Sophos Endpoint Security and Control 9.0.5 SoftSphere Technologies DefenseWall Personal Firewall 3.00 PCSecurityShield Security Shield 2010 13.0.16.313 PC Tools Firewall Plus 6.0.0.88 Panda Internet Security 2010 Outpost Security Suite Pro 7.0.3330.505.1221 BE Outpost Security Suite Pro 6.7.3.3063.452.0726 Online Solutions Security Suite 1.5.14905.0 Online Armor Online Armor Premium 4.0.0.35 Norman Security Suite Pro 8.0 McAfee Total Protection 2010 Kaspersky Internet Security 2010 9.0.0.736 G DATA TotalCare 2010 0 F-Secure Internet Security 2010 Eset Smart Security 4 0 Eeye Blink Professional 4.6.1 Dr.Web Security Space Pro 6.0.0.03100 Computer Associates Internet Security Suite 2010 Plus 0 Comodo Internet Security Free 4.0.138377.779 BitDefender Total Security 2010 0 AVIRA Premium Security Suite 0 AVG AVG 9.0.791 Avast Internet Security 5.0.462 3DProtect 3D EQSecure Professional Edition 4.2 |
| Not Vulnerable: |
Comodo Internet Security 4.1.149672 .916 |
Discussion
Multiple Vendor Argument Switch Security Bypass Vulnerabilities
Multiple vendors' security software is prone to security bypass vulnerabilities.
These issues may allow attackers to bypass certain security restrictions and perform malicious actions.
Multiple vendors' security software is prone to security bypass vulnerabilities.
These issues may allow attackers to bypass certain security restrictions and perform malicious actions.
Exploit / POC
Multiple Vendor Argument Switch Security Bypass Vulnerabilities
Researchers who discovered the issues have developed libraries to exploit these issues. These exploits are not publicly available or known to be circulating in the wild.
Researchers who discovered the issues have developed libraries to exploit these issues. These exploits are not publicly available or known to be circulating in the wild.
Solution / Fix
Multiple Vendor Argument Switch Security Bypass Vulnerabilities
Solution:
Updates for Comodo Internet Security are available; please see the references for more information.
Currently we are not aware of any vendor-supplied patches for other products. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution:
Updates for Comodo Internet Security are available; please see the references for more information.
Currently we are not aware of any vendor-supplied patches for other products. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
References
Multiple Vendor Argument Switch Security Bypass Vulnerabilities
References:
References: