First published: Wed Dec 08 2010(Updated: )
Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via crafted arguments to the 0x88000080 IOCTL, which triggers a buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Internet Security Suite |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4502 is classified as a high severity vulnerability due to its potential for causing denial of service and arbitrary code execution.
To fix CVE-2010-4502, users should update to a patched version of CA Internet Security Suite Plus that addresses the integer overflow issue.
CVE-2010-4502 affects users of CA Internet Security Suite Plus 2010, specifically version 6.2.0.22.
CVE-2010-4502 enables local users to cause a denial of service through pool corruption or potentially execute arbitrary code.
Exploiting CVE-2010-4502 may require local access and the ability to send crafted arguments, which could assist in executing the vulnerability.