CVE-2007-2523
CVE-2007-2523
CA Anti-Virus for the Enterprise r8 and Threat Manager r8 before 20070510 use weak permissions (NULL security descriptor) for the Task Service shared file mapping, which allows local users to modify this mapping and gain privileges by triggering a stack-based buffer overflow in InoCore.dll before 8.0.448.0.
Productos afectados
n/a · n/aPoCs públicas encontradas — 1
exploitdbwww.exploit-db.com/exploits/30019no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://blog.48bits.com/?p=103http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=530http://lists.grok.org.uk/pipermail/full-disclosure/2007-May/063275.htmlhttp://secunia.com/advisories/25202http://supportconnectw.ca.com/public/antivirus/infodocs/caav-secnotice050807.asphttp://www.kb.cert.org/vuls/id/788416http://www.osvdb.org/34586http://www.securityfocus.com/archive/1/468306/100/0/threadedhttp://www.securityfocus.com/bid/23906http://www.securitytracker.com/id?1018043http://www.vupen.com/english/advisories/2007/1750