The Buffer Overflow Protection (BOP) feature in McAfee VirusScan Enterprise before 8.8 Patch 6 allocates memory with Read, Write, Execute (RWX) permissions at predictable addresses on 32-bit platforms when protecting another application, which allows attackers to bypass the DEP and ASLR protection mechanisms via unspecified vectors.
References
Configurations
Information
Published : 2015-12-16 10:59
Updated : 2016-05-26 05:32
NVD link : CVE-2015-8577
Mitre link : CVE-2015-8577
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
mcafee
- virusscan_enterprise