Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-3396. PoCs published by Lufeng Li.
AI-analyzed exploit summary This exploit targets a kernel buffer overflow in Kingsoft Antivirus by sending a maliciously crafted input to the kavfm device driver via DeviceIoControl. The PoC attempts to trigger the vulnerability by writing a large buffer of 0x80 bytes to the driver.
Description
Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argument to IOCTL 0x80030004. NOTE: some of these details are obtained from third party information.
Exploits (1)
This exploit targets a kernel buffer overflow in Kingsoft Antivirus by sending a maliciously crafted input to the kavfm device driver via DeviceIoControl. The PoC attempts to trigger the vulnerability by writing a large buffer of 0x80 bytes to the driver.