CVE-2008-5724

The Personal Firewall driver (aka epfw.sys) 3.0.672.0 and earlier in ESET Smart Security 3.0.672 and earlier allows local users to gain privileges via a crafted IRP in a certain METHOD_NEITHER IOCTL request to \Device\Epfw that overwrites portions of memory.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:eset:smart_security:*:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.551:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.560:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.563:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.621:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.642:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.650:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.657:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.667:*:*:*:*:*:*:*
cpe:2.3:a:eset:smart_security:3.0.669:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-12-26 17:30

Updated : 2023-12-10 10:51


NVD link : CVE-2008-5724

Mitre link : CVE-2008-5724

CVE.ORG link : CVE-2008-5724


JSON object : View

Products Affected

eset

  • smart_security
CWE
CWE-264

Permissions, Privileges, and Access Controls