CVE-2010-5075: Integer Overflow
Integer overflow in aswFW.sys 5.0.594.0 in Avast! Internet Security 5.0 Korean Trial allows local users to cause a denial of service (memory corruption and panic) via a crafted IOCTLASWFWCOMMPIDINFORESULTS DeviceIoControl request to \\.\aswFW.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5075?
CVE-2010-5075 is classified as a high severity vulnerability due to its potential for causing memory corruption and denial of service.
How does CVE-2010-5075 exploit occur?
CVE-2010-5075 can be exploited by local users through a crafted IOCTL_ASWFW_COMM_PIDINFO_RESULTS DeviceIoControl request targeted at aswFW.sys.
What are the potential consequences of CVE-2010-5075?
The consequences of CVE-2010-5075 include memory corruption and a complete system panic, leading to a denial of service.
Which versions of Avast! Internet Security are affected by CVE-2010-5075?
CVE-2010-5075 affects Avast! Internet Security version 5.0, specifically the Korean Trial version.
How can I mitigate the risks associated with CVE-2010-5075?
To mitigate risks associated with CVE-2010-5075, it is recommended to update to a newer, patched version of Avast! Internet Security.