PT-2004-2141 · Prevx · Prevx Home
Tan Chew Keong
·
Published
2004-12-15
·
Updated
2017-07-11
·
CVE-2004-1193
CVSS v2.0
6.6
Medium
| Vector | AV:L/AC:L/Au:N/C:N/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Prevx Home version 1.0
Description:
The issue allows local users with administrator privileges to bypass intrusion prevention features. This is achieved by directly writing to the physical memory, which restores the running kernel's original SDT ServiceTable.
Recommendations:
For Prevx Home version 1.0, consider restricting access to the physical memory to prevent bypassing of intrusion prevention features until a patch is available. As a temporary workaround, limit the privileges of local users to prevent them from directly writing to the physical memory.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Prevx Home