René Helmke 7791f18b51 bootstrap
2023-05-16 16:09:41 +02:00

108 lines
3.3 KiB
JSON

{
"id": "CVE-2008-0365",
"sourceIdentifier": "cve@mitre.org",
"published": "2008-01-18T23:00:00.000",
"lastModified": "2018-10-15T21:59:07.687",
"vulnStatus": "Modified",
"descriptions": [
{
"lang": "en",
"value": "Multiple buffer overflows in CORE FORCE before 0.95.172 allow local users to cause a denial of service (system crash) and possibly execute arbitrary code in the kernel context via crafted arguments to (1) IOCTL functions in the Firewall module or (2) SSDT hook handler functions in the Registry module."
},
{
"lang": "es",
"value": "M\u00faltiples desbordamientos de b\u00fafer en CORE FORCE versiones anteriores a 0.95.172 permiten a usuarios locales provocar una denegaci\u00f3n de servicio (ca\u00edda de aplicaci\u00f3n) y posiblemente ejecutar c\u00f3digo de su elecci\u00f3n en contexto de n\u00facleo mediante argumentos manipulados en (1) funciones IOTCL en el m\u00f3dulo Firewall \u00f3 (2) funciones del gestor de enganche (hook) SSDT en el m\u00f3dulo Registry."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:L/Au:N/C:C/I:C/A:C",
"accessVector": "LOCAL",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 7.2
},
"baseSeverity": "HIGH",
"exploitabilityScore": 3.9,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "CWE-119"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:core_security_technologies:core_force:*:*:*:*:*:*:*:*",
"versionEndIncluding": "0.95.167",
"matchCriteriaId": "C5E443EA-4C09-40DD-A018-AAA25CC011E0"
}
]
}
]
}
],
"references": [
{
"url": "http://force.coresecurity.com/index.php?module=articles&func=display&aid=32",
"source": "cve@mitre.org"
},
{
"url": "http://securityreason.com/securityalert/3555",
"source": "cve@mitre.org"
},
{
"url": "http://www.coresecurity.com/?action=item&id=2025",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/486513/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/27341",
"source": "cve@mitre.org"
},
{
"url": "http://www.securitytracker.com/id?1019245",
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2008/0242",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/39758",
"source": "cve@mitre.org"
}
]
}