RSS   Vulnerabilities for 'Internet security 2018'   RSS

2017-12-21
 
CVE-2017-17408

CWE-190
 

 
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Bitdefender Internet Security 2018. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within cevakrnl.xmd. The issue results from the lack of proper validation of user-supplied data, which can result in an integer overflow before allocating a buffer. An attacker can leverage this vulnerability to execute code under the context of SYSTEM. Was ZDI-CAN-5101.

 

 >>> Vendor: Bitdefender 24 Products
Bitdefender
Bitdefender antivirus
Antivirus
Endpoint security
Bitdefender client
Internet security
Total security
Online anti-virus scanner
Update server
Bitdefender total security 2010
Gravityzone
Antivirus plus
Internet security 2018
Safepay
Central
Endpoint security tools
Total security 2020
Antivirus for mac
Antimalware software development kit
Antivirus 2020
Engines
Hypervisor introspection
Gravityzone business security
Vpn standalone


Copyright 2024, cxsecurity.com

 

Back to Top