CVE-2007-2965 : Detail

CVE-2007-2965

0.04%V3
Local
2007-05-31
21h00 +00:00
2017-07-28
10h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

Unspecified vulnerability in the Real-time Scanning component in multiple F-Secure products, including Internet Security 2005, 2006 and 2007; Anti-Virus 2005, 2006 and 2007; and Solutions based on F-Secure Protection Service for Consumers 6.40 and earlier allows local users to gain privileges via a crafted I/O request packet (IRP), related to IOCTL (Input/Output Control) and "access validation of the address space."

CVE Informations

Metrics

Metrics Score Severity CVSS Vector Source
V2 7.2 AV:L/AC:L/Au:N/C:C/I:C/A:C [email protected]

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

F-secure>>F-secure_anti-virus >> Version To (including) 4.65

    F-secure>>F-secure_anti-virus >> Version To (including) 4.65

      F-secure>>F-secure_anti-virus >> Version To (including) 5.42

        F-secure>>F-secure_anti-virus >> Version To (including) 5.44

          F-secure>>F-secure_anti-virus >> Version To (including) 5.52

            F-secure>>F-secure_anti-virus >> Version To (including) 5.61

              F-secure>>F-secure_anti-virus >> Version To (including) 6.40

                F-secure>>F-secure_anti-virus >> Version 2005

                  F-secure>>F-secure_anti-virus >> Version 2006

                    F-secure>>F-secure_anti-virus >> Version 2007

                      F-secure>>F-secure_anti-virus_client_security >> Version To (including) 6.03

                        F-secure>>F-secure_anti-virus_linux_client_security >> Version To (including) 5.30

                          F-secure>>F-secure_anti-virus_linux_server_security >> Version To (including) 5.30

                            F-secure>>F-secure_internet_security >> Version 2005

                              F-secure>>F-secure_internet_security >> Version 2006

                                F-secure>>F-secure_internet_security >> Version 2007

                                  F-secure>>F-secure_protection_service >> Version To (including) 6.40

                                    F-secure>>Internet_gatekeeper >> Version To (including) 2.16

                                      F-secure>>Internet_gatekeeper >> Version To (including) 6.60

                                      References

                                      http://www.securitytracker.com/id?1018148
                                      Tags : vdb-entry, x_refsource_SECTRACK
                                      http://www.securitytracker.com/id?1018146
                                      Tags : vdb-entry, x_refsource_SECTRACK
                                      http://www.vupen.com/english/advisories/2007/1985
                                      Tags : vdb-entry, x_refsource_VUPEN
                                      http://osvdb.org/36727
                                      Tags : vdb-entry, x_refsource_OSVDB
                                      http://secunia.com/advisories/25439
                                      Tags : third-party-advisory, x_refsource_SECUNIA