PT-2008-3278 · Sophos · Sophos Anti-Virus

Publicado

2008-04-29

·

Atualizado

2018-10-11

·

CVE-2008-1737

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Sophos Anti-Virus versions 7.0.5 and other 7.x versions
Description The issue allows local users to cause a denial of service, potentially leading to a reboot with the product disabled, and may also allow privilege escalation. This is achieved by setting a zero value in a certain length field in the ObjectAttributes argument to the NtCreateKey hooked System Service Descriptor Table (SSDT) function when Runtime Behavioural Analysis is enabled.
Recommendations For Sophos Anti-Virus versions 7.0.5 and other 7.x versions, consider disabling Runtime Behavioural Analysis as a temporary workaround to minimize the risk of exploitation.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-1737

Produtos afetados

Sophos Anti-Virus