The dwall.sys driver in SoftSphere DefenseWall Personal Firewall 3.24 allows local users to write data to arbitrary memory locations, and consequently gain privileges, via a crafted 0x00222000, 0x00222004, 0x00222008, 0x0022200c, or 0x00222010 IOCTL call.
References
Link | Resource |
---|---|
http://www.exploit-db.com/exploits/36052 | Exploit |
http://www.osvdb.org/117996 |
Configurations
Information
Published : 2015-02-19 07:59
Updated : 2015-02-20 17:23
NVD link : CVE-2015-1515
Mitre link : CVE-2015-1515
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
softsphere
- defensewall_personal_firewall