|
|

CVE Reference: CVE-2006-3074 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2006-3074 |
|
|
Description: klif.sys in Kaspersky Internet Security 6.0 and 7.0, Kaspersky Anti-Virus (KAV) 6.0 and 7.0, KAV 6.0 for Windows Workstations, and KAV 6.0 for Windows Servers does not validate certain parameters to the (1) NtCreateKey, (2) NtCreateProcess, (3) NtCreateProcessEx, (4) NtCreateSection, (5) NtCreateSymbolicLinkObject, (6) NtCreateThread, (7) NtDeleteValueKey, (8) NtLoadKey2, (9) NtOpenKey, (10) NtOpenProcess, (11) NtOpenSection, and (12) NtQueryValueKey hooked system calls, which allows local users to cause a denial of service (reboot) via an invalid parameter, as demonstrated by the ClientId parameter to NtOpenProcess. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/27104 http://xforce.iss.net/xforce/xfdb/34875 ST 1018257 SAID Secunia Advisory: SA20629 Secunia Advisory: SA25603 MISC http://www.matousec.com/info/advisories/Kaspersky-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php http://www.rootkit.com/newsread.php?newsid=726 http://www.rootkit.com/board.php?did=edge726&closed=0&lastx=15 http://uninformed.org/index.cgi?v=4&a=4&p=7 http://uninformed.org/index.cgi?v=4&a=4&p=4 CONFIRM http://www.kaspersky.com/technews?id=203038695 BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/471453/100/0/threaded BID 18341 24491 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |