Lucene search

K
cveMitreCVE-2006-6952
HistoryJan 24, 2007 - 11:28 p.m.

CVE-2006-6952

2007-01-2423:28:00
mitre
web.nvd.nist.gov
25
computer associates
hips
drivers
local users
privileges
ioctls
callback function pointers
vulnerability
cve-2006-6952
nvd

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

19.0%

Computer Associates Host Intrusion Prevention System (HIPS) drivers (1) Core kmxstart.sys 6.5.4.31 and (2) Firewall kmxfw.sys 6.5.4.10 allow local users to gain privileges by using certain privileged IOCTLs to modify callback function pointers.

Affected configurations

Nvd
Node
cahost-based_intrusion_prevention_systemMatchcore_6.5.4.31
OR
cahost-based_intrusion_prevention_systemMatchfirewall_6.5.4.10
VendorProductVersionCPE
cahost-based_intrusion_prevention_systemcore_6.5.4.31cpe:2.3:a:ca:host-based_intrusion_prevention_system:core_6.5.4.31:*:*:*:*:*:*:*
cahost-based_intrusion_prevention_systemfirewall_6.5.4.10cpe:2.3:a:ca:host-based_intrusion_prevention_system:firewall_6.5.4.10:*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

6.6

Confidence

Low

EPSS

0.001

Percentile

19.0%

Related for CVE-2006-6952