CVE-2010-2308

Sophos Anti-Virus <7.6.20 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in the filter driver (savonaccessfilter.sys) in Sophos Anti-Virus before 7.6.20 allows local users to gain privileges via crafted arguments to the NtQueryAttributesFile function.

References (6)

Core 6
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/40085
Vendor Advisory x_refsource_misc
http://dvlabs.tippingpoint.com/advisory/TPTI-10-03
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/511773/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1024089
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/1412

Scores

EPSS 0.0014
EPSS Percentile 34.3%

Details

Status published
Products (43)
sophos/anti-virus 3.4.6
sophos/anti-virus 3.78
sophos/anti-virus 3.78d
sophos/anti-virus 3.79
sophos/anti-virus 3.80
sophos/anti-virus 3.81
sophos/anti-virus 3.82
sophos/anti-virus 3.83
sophos/anti-virus 3.84
sophos/anti-virus 3.85
... and 33 more
Published Jun 16, 2010
Tracked Since Feb 18, 2026