PT-2006-7221 · Avg · Avg Anti-Virus Plus Firewall

Publicado

2006-12-18

·

Atualizado

2018-10-17

·

CVE-2006-6619

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AVG Anti-Virus plus Firewall version 7.5.431
Description The issue allows local users to bypass controls on a process by spoofing certain fields in the Process Environment Block (PEB), specifically the ImagePathName, CommandLine, and WindowTitle fields. This could potentially be exploited to evade detection or bypass security restrictions imposed by the product.
Recommendations For AVG Anti-Virus plus Firewall version 7.5.431, consider restricting access to sensitive process information to minimize the risk of exploitation until a patch is available. As a temporary workaround, monitor process activities closely for any signs of unauthorized access or manipulation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-6619

Produtos afetados

Avg Anti-Virus Plus Firewall