CVE-2014-9642

bdagent.sys in BullGuard Antivirus, Internet Security, Premium Protection, and Online Backup before 15.0.288 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x0022405c IOCTL call.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:bullguard:bdagent.sys:*:*:*:*:*:*:*:*
OR cpe:2.3:a:bullguard:internet_security:*:*:*:*:*:*:*:*
cpe:2.3:a:bullguard:online_backup:*:*:*:*:*:*:*:*
cpe:2.3:a:bullguard:premium_protection:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:21

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/130247/BullGuard-14.1.285.4-Privilege-Escalation.html - Exploit () http://packetstormsecurity.com/files/130247/BullGuard-14.1.285.4-Privilege-Escalation.html - Exploit
References () http://www.bullguard.com/about/release-notes.aspx - Vendor Advisory () http://www.bullguard.com/about/release-notes.aspx - Vendor Advisory
References () http://www.exploit-db.com/exploits/35994 - Exploit () http://www.exploit-db.com/exploits/35994 - Exploit
References () http://www.greyhathacker.net/?p=818 - Exploit () http://www.greyhathacker.net/?p=818 - Exploit
References () http://www.osvdb.org/114478 - () http://www.osvdb.org/114478 -

Information

Published : 2015-02-06 15:59

Updated : 2024-11-21 02:21


NVD link : CVE-2014-9642

Mitre link : CVE-2014-9642

CVE.ORG link : CVE-2014-9642


JSON object : View

Products Affected

bullguard

  • online_backup
  • premium_protection
  • internet_security
  • bdagent.sys
CWE
CWE-264

Permissions, Privileges, and Access Controls