>> CA Products "kmxfw.sys" Privilege Escalation and DoS Vulnerabilities
Title : CA Products "kmxfw.sys" Privilege Escalation and DoS Vulnerabilities VUPEN ID : VUPEN/ADV-2008-2339 CVE ID : CVE-2008-2926 - CVE-2008-3174 CWE ID : CWE-19 - CWE-20
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-08-12
Technical Description
Two vulnerabilities have been identified in various CA products, which could be exploited by attackers or malicious users to gain elevated privileges or cause a denial of service.
The first issue is caused by an input validation error in the "kmxfw.sys" driver when processing user-supplied data, which could be exploited by unprivileged users to cause a system crash or execute arbitrary code with kernel privileges via a specially crafted IOCTL request.
The second vulnerability is caused by an unspecified input validation error in the "kmxfw.sys" driver, which could allow attackers to cause a denial of service condition.
CA Internet Security Suite r3, r4 and CA Personal Firewall 2007, 2008 : Upgrade to engine version 1.2.276 or later via the built-in update mechanism. References