CVE-2017-12823: Buffer Overflow
Published Dec 8, 2017
·Updated
Kernel pool memory corruption in one of drivers in Kaspersky Embedded Systems Security version 1.2.0.300 leads to local privilege escalation.
Affected Software
2 affected components
Kaspersky Embedded Systems Security=1.2.0.300
Kaspersky Embedded Systems Security=2.0.0.385
Event History
Dec 8, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-12823?
CVE-2017-12823 is classified as a high-severity vulnerability due to its potential for local privilege escalation.
2
How do I fix CVE-2017-12823?
To fix CVE-2017-12823, upgrade to Kaspersky Embedded Systems Security version 2.0.0.385 or later.
3
Which versions of Kaspersky are affected by CVE-2017-12823?
CVE-2017-12823 affects Kaspersky Embedded Systems Security versions 1.2.0.300 and 2.0.0.385.
4
What type of vulnerability is CVE-2017-12823?
CVE-2017-12823 is a kernel pool memory corruption vulnerability.
5
What can an attacker achieve by exploiting CVE-2017-12823?
An attacker can achieve local privilege escalation by exploiting CVE-2017-12823.