>> Kaspersky Anti-Virus Products "klif.sys" Driver Local Denial of Service Vulnerability
Title : Kaspersky Anti-Virus Products "klif.sys" Driver Local Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-2145 CVE ID : GENERIC-MAP-NOMATCH
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2007-06-12
Technical Description
A vulnerability has been identified in Kaspersky Anti-Virus and Kaspersky Internet Security, which could be exploited by local attackers to cause a denial of service. This issue is caused by an error in the "klif.sys" driver when processing malformed parameters passed to a hooked function (e.g. "NtOpenProcess"), which could be exploited by malicious users to crash a vulnerable system.