CVE-2009-0449: Buffer Overflow
Published Feb 5, 2009
·Updated
Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0 and Anti-Virus 2008 allows local users to gain privileges via an IOCTL 0x80052110 call.
Affected Software
2 affected components
Kaspersky Lab Kaspersky Anti-virus=2008
Kaspersky Lab Kaspersky Anti-virus=6.0
Event History
Feb 5, 2009
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Feb 10, 2009
Data Sourced
via NVD·07:00 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-0449?
CVE-2009-0449 is considered a critical vulnerability due to its potential for privilege escalation.
2
How do I fix CVE-2009-0449?
To fix CVE-2009-0449, update Kaspersky Anti-Virus to the latest version provided by Kaspersky Lab.
3
Who is affected by CVE-2009-0449?
CVE-2009-0449 affects users of Kaspersky Anti-Virus for Workstations 6.0 and Anti-Virus 2008.
4
What kind of exploit can be executed through CVE-2009-0449?
CVE-2009-0449 can be exploited to execute a buffer overflow, allowing local users to gain elevated privileges.
5
What systems should be monitored for CVE-2009-0449?
Systems running Kaspersky Anti-Virus versions 6.0 for Workstations and 2008 should be monitored for CVE-2009-0449.