packetstormsecurity.com
http://packetstormsecurity.com/files/127772/Symantec-Endpoint-Protection-11.x-12.x-Kernel-Pool-Overflow.html CVE-2014-3434
Symantec Endpoint Protection 11.x/12.x - Kernel Pool Overflow / Local Privilege Escalation
Record summary
CVE-2014-3434 has a selected CVSS score of 6.9; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the sysplant driver in Symantec Endpoint Protection (SEP) Client 11.x and 12.x before 12.1 RU4 MP1b, and Small Business Edition before SEP 12.1, allows local users to execute arbitrary code via a long argument to a 0x00222084 IOCTL call.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSymantec Endpoint Protection 11.x/12.x - Kernel Pool Overflow / Local Privilege EscalationExploitDB exploitby ryujin & sicknessNot analyzed1 file
References
1058996Third-party advisory
http://secunia.com/advisories/58996 59697Third-party advisory
http://secunia.com/advisories/59697 34272exploit
http://www.exploit-db.com/exploits/34272 VU#252068Third-party advisory
http://www.kb.cert.org/vuls/id/252068 109663vdb entry
http://www.osvdb.org/109663 68946vdb entry
http://www.securityfocus.com/bid/68946 symantec.comConfirmation
http://www.symantec.com/security_response/securityupdates/detail.jsp?fid=security_advisory&pvid=security_advisory&year=&suid=20140804_00 symantec-endpoint-priv-escalation(95062)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/95062 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2014-3434