CVE-2008-1471
Panda Internet Security 2008 and Antivirus+ Firewall 2008 - Local Privilege Escalation via IOCTL Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1471. PoCs published by Tobias Klein.
AI-analyzed exploit summary The provided text describes a vulnerability in Panda Internet Security/Antivirus+Firewall 2008 related to insufficient validation of IOCTL requests, potentially leading to kernel memory corruption. It references a binary exploit but does not contain actual exploit code.
Description
The cpoint.sys driver in Panda Internet Security 2008 and Antivirus+ Firewall 2008 allows local users to cause a denial of service (system crash or kernel panic), overwrite memory, or execute arbitrary code via a crafted IOCTL request that triggers an out-of-bounds write of kernel memory.
Exploits (1)
The provided text describes a vulnerability in Panda Internet Security/Antivirus+Firewall 2008 related to insufficient validation of IOCTL requests, potentially leading to kernel memory corruption. It references a binary exploit but does not contain actual exploit code.