Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Kaspersky Multiple insufficient argument validation of hooked SSDT function Vulnerability Jun 15 2007 08:15AM
Matousec - Transparent security Research (research matousec com)
Hello,

We would like to inform you about a vulnerability in Kaspersky Internet Security 6.

Description:

Kaspersky Internet Security hooks many functions in SSDT and in at least nine cases it fails to validate arguments that
come from the user mode. User calls to NtCreateKey, NtCreateProcess, Nt...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus