Vulnerabilities > CVE-2009-2966 - Resource Management Errors vulnerability in Kaspersky Anti-Virus and Kaspersky Internet Security

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
kaspersky
CWE-399
exploit available

Summary

avp.exe in Kaspersky Internet Security 9.0.0.459 and Anti-Virus 9.0.0.463 allows remote attackers to cause a denial of service (CPU consumption and network connectivity loss) via an HTTP URL request that contains a large number of dot "." characters.

Vulnerable Configurations

Part Description Count
Application
Kaspersky
2

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionKaspersky 2010 Remote Memory Corruption / DoS PoC. CVE-2009-2966. Dos exploit for windows platform
idEDB-ID:9537
last seen2016-02-01
modified2009-08-28
published2009-08-28
reporterPrakhar Prasad
sourcehttps://www.exploit-db.com/download/9537/
titleKaspersky 2010 - Remote Memory Corruption / DoS PoC