CVE-2006-3455 : Detail

CVE-2006-3455

0.06%V3
Local
2006-10-23
18h00 +00:00
2018-10-18
12h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

The SAVRT.SYS device driver, as used in Symantec AntiVirus Corporate Edition 8.1 and 9.0.x up to 9.0.3, and Symantec Client Security 1.1 and 2.0.x up to 2.0.3, allows local users to execute arbitrary code via a modified address for the output buffer argument to the DeviceIOControl function.

CVE Informations

Metrics

Metrics Score Severity CVSS Vector Source
V2 4.3 AV:L/AC:L/Au:S/C:P/I:P/A:P [email protected]

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Symantec>>Client_security >> Version 1.1

    Symantec>>Client_security >> Version 1.1.1

    Symantec>>Client_security >> Version 1.1.1_build_393

      Symantec>>Client_security >> Version 1.1.1_mr1_build_8.1.1.314a

      Symantec>>Client_security >> Version 1.1.1_mr2_build_8.1.1.319

      Symantec>>Client_security >> Version 1.1.1_mr3_build_8.1.1.323

      Symantec>>Client_security >> Version 1.1.1_mr4_build_8.1.1.329

      Symantec>>Client_security >> Version 1.1.1_mr5_build_8.1.1.336

      Symantec>>Client_security >> Version 1.1.1_mr6_b8.1.1.266

        Symantec>>Client_security >> Version 1.1_stm_b8.1.0.825a

          Symantec>>Client_security >> Version 2.0

          Symantec>>Client_security >> Version 2.0.1

          Symantec>>Client_security >> Version 2.0.1_build_9.0.1.1000

          Symantec>>Client_security >> Version 2.0.2

          Symantec>>Client_security >> Version 2.0.2_build_9.0.2.1000

          Symantec>>Client_security >> Version 2.0.3

          Symantec>>Client_security >> Version 2.0.3_build_9.0.3.1000

          Symantec>>Client_security >> Version 2.0_scf_7.1

            Symantec>>Client_security >> Version 2.0_stm_build_9.0.0.338

              Symantec>>Norton_antivirus >> Version 8.1

                Symantec>>Norton_antivirus >> Version 8.1.0.825a

                  Symantec>>Norton_antivirus >> Version 8.1.1

                    Symantec>>Norton_antivirus >> Version 8.1.1.319

                    Symantec>>Norton_antivirus >> Version 8.1.1.323

                    Symantec>>Norton_antivirus >> Version 8.1.1.329

                    Symantec>>Norton_antivirus >> Version 8.1.1.366

                      Symantec>>Norton_antivirus >> Version 8.1.1.377

                        Symantec>>Norton_antivirus >> Version 8.1.1_build8.1.1.314a

                        Symantec>>Norton_antivirus >> Version 8.1.1_build393

                          Symantec>>Norton_antivirus >> Version 8.01.434

                          Symantec>>Norton_antivirus >> Version 8.01.437

                          Symantec>>Norton_antivirus >> Version 8.01.446

                          Symantec>>Norton_antivirus >> Version 8.01.457

                          Symantec>>Norton_antivirus >> Version 8.01.460

                          Symantec>>Norton_antivirus >> Version 8.01.464

                          Symantec>>Norton_antivirus >> Version 8.01.471

                          Symantec>>Norton_antivirus >> Version 9.0.1

                            Symantec>>Norton_antivirus >> Version 9.0.1.1.1000

                              Symantec>>Norton_antivirus >> Version 9.0.1.1000

                                Symantec>>Norton_antivirus >> Version 9.0.2

                                  Symantec>>Norton_antivirus >> Version 9.0.2.1000

                                    References

                                    http://www.securityfocus.com/bid/20684
                                    Tags : vdb-entry, x_refsource_BID
                                    http://www.vupen.com/english/advisories/2006/4157
                                    Tags : vdb-entry, x_refsource_VUPEN
                                    http://secunia.com/advisories/22536
                                    Tags : third-party-advisory, x_refsource_SECUNIA
                                    http://securitytracker.com/id?1017108
                                    Tags : vdb-entry, x_refsource_SECTRACK
                                    http://securitytracker.com/id?1017109
                                    Tags : vdb-entry, x_refsource_SECTRACK