Lucene search

K
cve[email protected]CVE-2010-4502
HistoryOct 03, 2022 - 4:21 p.m.

CVE-2010-4502

2022-10-0316:21:06
CWE-189
web.nvd.nist.gov
21
cve-2010-4502
kmxsbx.sys
ca internet security suite plus
buffer overflow
denial of service
pool corruption
nvd

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.7%

Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via crafted arguments to the 0x88000080 IOCTL, which triggers a buffer overflow.

Affected configurations

NVD
Node
cainternet_security_suite_plus_2010

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.7%

Related for CVE-2010-4502