Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
Kaspersky Anti-Virus Multiple DoS And Information Disclosure Vulnerabilities
Information
Severity
Severity
Family
Family
CVSSv2 Base
CVSSv2 Base
CVSSv2 Vector
CVSSv2 Vector
Solution Type
Solution Type
Created
Created
Modified
Modified
Summary
The host is installed with Kaspersky Antivirus is prone to multiple denial of service and information disclosure vulnerabilities.
Insight
Insight
Multiple flaws are due to, - An error in the 'syscall filtering' functionality of 'KLIF driver'. - An error in the 'IOCTL handling' functionality 'KL1 driver'. - An error in various 'IOCTL handlers' of the 'KLDISK driver'. Specially crafted IOCTL requests can cause the driver to return out-of-bounds kernel memory. - An error in 'window broadcast message handling' functionality.
Affected Software
Affected Software
Kaspersky Anti-Virus version 16.0.0.614
Detection Method
Detection Method
Checks if a vulnerable version is present on the target host.
Solution
Solution
Upgrade to Kaspersky Anti-Virus version 17.0.0.611 or later.