Record summary

CVE-2014-3434 has a selected CVSS score of 6.9; EIP currently links 1 catalogued exploit.

Description

Buffer overflow in the sysplant driver in Symantec Endpoint Protection (SEP) Client 11.x and 12.x before 12.1 RU4 MP1b, and Small Business Edition before SEP 12.1, allows local users to execute arbitrary code via a long argument to a 0x00222084 IOCTL call.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBSymantec Endpoint Protection 11.x/12.x - Kernel Pool Overflow / Local Privilege EscalationExploitDB exploitby ryujin & sicknessNot analyzed1 file
ExploitDB

PoC details

References

10