Description
p4r4noid has reported a vulnerability in CommView, which can be exploited by malicious, local users to cause a DoS (Denial of Service).
The vulnerability is caused due to an error in the cv2k1.sys kernel driver when processing IOCTLs. This can be exploited to cause a system crash via a specially crafted 2578h IOCTL.
The vulnerability is reported in version 6.1 Build 642 and prior.
Solution
Update to version 6.1 Build 644.
Provided and/or discovered by
p4r4noid, Corelan
Original Advisory
http://www.corelan.be:8800/advisories.php?id=CORELAN-10-030
0 Visitor Reactions & Comments: