First published: Wed Jul 17 2019(Updated: )
Comodo Antivirus versions up to 12.0.0.6810 are vulnerable to a local Denial of Service affecting CmdVirth.exe via its LPC port "cmdvrtLPCServerPort". A low privileged local process can connect to this port and send an LPC_DATAGRAM, which triggers an Access Violation due to hardcoded NULLs used for Source parameter in a memcpy operation that is called for this handler. This results in CmdVirth.exe and its child svchost.exe instances to terminate.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Comodo Antivirus | <=12.0.0.6810 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-3971 has a low severity rating, as it leads to a local Denial of Service vulnerability.
To fix CVE-2019-3971, upgrade to a version of Comodo Antivirus later than 12.0.0.6810.
CVE-2019-3971 affects Comodo Antivirus versions up to 12.0.0.6810.
CVE-2019-3971 involves a local Denial of Service attack.
No, CVE-2019-3971 can only be exploited by a low privileged local process.