CVE-2008-0365
Published Jan 18, 2008
Last updated 6 years ago
Overview
- Description
- Multiple buffer overflows in CORE FORCE before 0.95.172 allow local users to cause a denial of service (system crash) and possibly execute arbitrary code in the kernel context via crafted arguments to (1) IOCTL functions in the Firewall module or (2) SSDT hook handler functions in the Registry module.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:core_security_technologies:core_force:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C5E443EA-4C09-40DD-A018-AAA25CC011E0", "versionEndIncluding": "0.95.167" } ], "operator": "OR" } ] } ]