CVE-2014-2926: Null Pointer Dereference
Published Jul 14, 2014
·Updated
kapfa.sys in Kaseya Virtual System Administrator (VSA) 6.5 before 6.5.0.17 and 7.0 before 7.0.0.16 allows local users to cause a denial of service (NULL pointer dereference and application crash) via unspecified vectors.
Affected Software
2 affected components
Kaseya Virtual System Administrator=6.5
Kaseya Virtual System Administrator=7.0
Event History
Jul 14, 2014
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-2926?
CVE-2014-2926 is classified as a denial of service vulnerability that can cause application crashes.
2
How do I fix CVE-2014-2926?
To fix CVE-2014-2926, update Kaseya Virtual System Administrator to version 6.5.0.17 or 7.0.0.16 or later.
3
Who is affected by CVE-2014-2926?
CVE-2014-2926 affects users of Kaseya Virtual System Administrator versions prior to 6.5.0.17 and 7.0.0.16.
4
What kind of attack vector is involved in CVE-2014-2926?
CVE-2014-2926 allows local users to exploit unspecified vectors to cause a denial of service.
5
Is CVE-2014-2926 exploitable remotely?
CVE-2014-2926 is not considered remotely exploitable as it requires local access to the system.