PT-2018-4095 · Ahnlab · Ahnlab V3 Internet Security

Publicado

2018-04-24

·

Atualizado

2018-06-04

·

CVE-2013-3947

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AhnLab V3 Internet Security version 8.0.7.5 (Build 1373)
Description The issue is related to a buffer overflow in the MedCoreD.sys component. This can be exploited by local users to gain privileges through a crafted 0xA3350014 IOCTL call.
Recommendations For AhnLab V3 Internet Security version 8.0.7.5 (Build 1373), consider restricting access to the MedCoreD.sys component until a patch is available. Avoid using the 0xA3350014 IOCTL call in the affected system until the issue is resolved.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2013-3947

Produtos afetados

Ahnlab V3 Internet Security