PT-2014-6237 · Eset · Eset Personal Firewall
Published
2014-11-04
·
Updated
2017-08-29
·
CVE-2014-4974
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
ESET Personal Firewall versions 5.0 through 7.0
Description
The issue allows local users to obtain sensitive information from kernel memory via crafted IOCTL calls. This is related to the ESET Personal Firewall NDIS filter kernel mode driver, also known as the Personal Firewall module, before Build 1212.
Recommendations
For versions 5.0 through 7.0, update to a version after Build 1212 (20140609) to resolve the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Eset Personal Firewall