CVE-2005-2986: High severity AhnLab V3 VirusBlock 2005 vulnerability
The v3flt2k.sys driver in AhnLab V3Pro 2004 Build 6.0.0.383, V3 VirusBlock 2005 Build 6.0.0.383, V3Net for Windows Server 6.0 Build 6.0.0.383 does not properly validate the source of the DeviceIoControl commands, which allows remote attackers to gain privileges.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2986?
CVE-2005-2986 is classified as a high-severity vulnerability due to its potential to allow remote privilege escalation.
How do I fix CVE-2005-2986?
To fix CVE-2005-2986, users should update to the latest version of AhnLab V3Pro, V3 VirusBlock, or V3Net that addresses the vulnerability.
What systems are affected by CVE-2005-2986?
CVE-2005-2986 affects AhnLab V3Pro 2004 Build 6.0.0.383, V3 VirusBlock 2005 Build 6.0.0.383, and V3Net for Windows Server 6.0 Build 6.0.0.383.
What type of vulnerability is CVE-2005-2986?
CVE-2005-2986 is a privilege escalation vulnerability due to improper validation of DeviceIoControl commands.
Who can exploit CVE-2005-2986?
CVE-2005-2986 can be exploited by remote attackers who can send specially crafted DeviceIoControl commands.