CVE-2010-1591: Input Validation
Beijing Rising International Rising Antivirus 2008 through 2010 does not properly validate input to certain IOCTLs, including 0x83003C07, which allows local users to gain privileges via crafted IOCTL requests to the (1) HookCont.sys, (2) HookNtos.sys, (3) HOOKREG.sys, or (4) HookSys.sys device driver; or the (5) RsNTGdi.sys kernel module, reachable through \Device\RSNTGDI.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1591?
CVE-2010-1591 is classified as high severity due to its potential for privilege escalation.
How do I fix CVE-2010-1591?
To fix CVE-2010-1591, update to the latest version of Rising Antivirus that addresses this vulnerability.
Who is affected by CVE-2010-1591?
CVE-2010-1591 affects users of Rising Antivirus versions 2008, 2009, and 2010.
What vulnerabilities are exploited in CVE-2010-1591?
CVE-2010-1591 exploits improper input validation in specific IOCTL requests to various device drivers.
Can CVE-2010-1591 be exploited remotely?
CVE-2010-1591 cannot be exploited remotely; it requires local access to the affected system.