Vulnerabilities > CVE-2009-2740 - Resource Management Errors vulnerability in CA Host-Based Intrusion Prevention System 8.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
kmxIds.sys before 7.3.1.18 in CA Host-Based Intrusion Prevention System (HIPS) 8.1 allows remote attackers to cause a denial of service (system crash) via a malformed packet.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
Nessus
NASL family | Windows |
NASL id | CA_HIPS_KMXIDS_SYS_RO10298.NASL |
description | The remote Windows host contains a version of the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 40621 |
published | 2009-08-19 |
reporter | This script is Copyright (C) 2009-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/40621 |
title | CA Host-Based Intrusion Prevention System Client kmxIds.sys DoS (CA20090818) |
code |
|
Seebug
bulletinFamily | exploit |
description | CVE(CAN) ID: CVE-2009-2740 CA HIPS集成了防火墙、入侵检测、入侵保护、操作系统安全和应用控制等功能,提供集中的主动安全防护。 CA HIPS的kmxIds.sys驱动没有正确地处理畸形报文,远程攻击者可以通过发送恶意报文导致内核崩溃。 Computer Associates HIPS 8.1 厂商补丁: Computer Associates ------------------- 目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: https://support.ca.com/irj/portal/anonymous/redirArticles?reqPage=search&searchID=RO10298 |
id | SSV:12087 |
last seen | 2017-11-19 |
modified | 2009-08-21 |
published | 2009-08-21 |
reporter | Root |
title | CA HIPS kmxIds.sys驱动拒绝服务漏洞 |