PoC Index

CVE-2010-0705

HIGH 7.2EPSS 0.9%

Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial of service (system crash) or execute arbitrary code to gain privileges via IOCTL requests using crafted kernel addresses that trigger memory corruption.

CVSS v2.0
7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
EPSS
0.93% chance of exploitation in the next 30 days, 58th percentile
Published
2010-02-25
Updated
2024-08-07

ExploitDB entries (1)

References

Related