full-disclosure-uk August 2008 archive
Main Archive Page > Month Archives  > full-disclosure-uk archives
full-disclosure-uk: [Full-disclosure] [TKADV2008-006] CA HIPS Km

[Full-disclosure] [TKADV2008-006] CA HIPS KmxFw.sys Kernel Memory Corruption

From: Tobias Klein <tk_at_nospam>
Date: Tue Aug 12 2008 - 19:44:41 GMT
To: bugtraq@securityfocus.com


The kernel driver KmxFw.sys shipped with various CA products contains a vulnerability in the code that handles IOCTL requests. Exploitation of this vulnerability can result in:

  1. local denial of service attacks (system crash due to a kernel panic), or
  2. local execution of arbitrary code at the kernel level (complete system compromise)

A full technical description can be found in the advisory available at: http://www.trapkit.de/advisories/TKADV2008-006.txt



Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/