39916Third-party advisory
http://secunia.com/advisories/39916 CVE-2010-2031
Kingsoft Webshield 'KAVSafe.sys' 2010.4.14.609 (2010.5.23) - Kernel Mode Privilege Escalation
Record summary
CVE-2010-2031 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
KAVSafe.sys 2010.4.14.609 and earlier, as used in Kingsoft Webshield 3.5.1.2 and earlier, allows local users to overwrite arbitrary kernel memory via a crafted request to IOCTL 0x830020d4 on the KAVSafe device.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBKingsoft Webshield 'KAVSafe.sys' 2010.4.14.609 (2010.5.23) - Kernel Mode Privilege EscalationExploitDB exploitby Xuanyuan SmartNot analyzed1 file
References
512710exploit
http://www.exploit-db.com/exploits/12710 40342vdb entry
http://www.securityfocus.com/bid/40342 webshield-kavsafe-privilege-escalation(58780)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/58780 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-2031