First published: Tue Aug 12 2008(Updated: )
Unspecified vulnerability in the kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, allows remote attackers to cause a denial of service via unknown vectors, related to "insufficient validation."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Computer Associates Internet Security Suite | =2008 | |
CA Personal Firewall | =2008 | |
CA Host-Based Intrusion Prevention System | =r8 | |
CA Personal Firewall | =2007 | |
Computer Associates Internet Security Suite | =2007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-3174 has a medium severity rating due to its potential for causing denial of service.
To fix CVE-2008-3174, update the CA Host-Based Intrusion Prevention System to the latest version or apply any available patches.
CVE-2008-3174 affects CA Host-Based Intrusion Prevention System r8, CA Internet Security Suite 2007 and 2008, and Computer Associates Personal Firewall 2007 and 2008.
Yes, CVE-2008-3174 can be exploited remotely, allowing attackers to cause denial of service.
Insufficient validation in CVE-2008-3174 refers to the failure of the kmxfw.sys driver to properly validate input, leading to potential vulnerabilities.