CVE Vulnerabilities

CVE-2007-2965

Published: May 31, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in the Real-time Scanning component in multiple F-Secure products, including Internet Security 2005, 2006 and 2007; Anti-Virus 2005, 2006 and 2007; and Solutions based on F-Secure Protection Service for Consumers 6.40 and earlier allows local users to gain privileges via a crafted I/O request packet (IRP), related to IOCTL (Input/Output Control) and access validation of the address space.

Affected Software

Name Vendor Start Version End Version
F-secure_anti-virus F-secure * 4.65 (including)
F-secure_anti-virus F-secure * 5.42 (including)
F-secure_anti-virus F-secure * 5.44 (including)
F-secure_anti-virus F-secure * 5.52 (including)
F-secure_anti-virus F-secure * 5.61 (including)
F-secure_anti-virus F-secure * 6.40 (including)
F-secure_anti-virus F-secure 2005 (including) 2005 (including)
F-secure_anti-virus F-secure 2006 (including) 2006 (including)
F-secure_anti-virus F-secure 2007 (including) 2007 (including)
F-secure_anti-virus_client_security F-secure * 6.03 (including)
F-secure_anti-virus_linux_client_security F-secure * 5.30 (including)
F-secure_anti-virus_linux_server_security F-secure * 5.30 (including)
F-secure_internet_security F-secure 2005 (including) 2005 (including)
F-secure_internet_security F-secure 2006 (including) 2006 (including)
F-secure_internet_security F-secure 2007 (including) 2007 (including)
F-secure_protection_service F-secure * 6.40 (including)
Internet_gatekeeper F-secure * 2.16 (including)
Internet_gatekeeper F-secure * 6.60 (including)

References