Vulnerability Description
The kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, does not properly verify IOCTL requests, which allows local users to cause a denial of service (system crash) or possibly gain privileges via a crafted request.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Broadcom | Internet Security Suite | 3.0 |
| Ca | Host Based Intrusion Prevention System | r8 |
| Ca | Internet Security Suite 2008 | All versions |
| Ca | Personal Firewall 2007 | All versions |
| Ca | Personal Firewall 2008 | All versions |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/31434PatchVendor Advisory
- http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36559
- http://www.securityfocus.com/archive/1/495397/100/0/threaded
- http://www.securityfocus.com/bid/30651
- http://www.securitytracker.com/id?1020658
- http://www.securitytracker.com/id?1020659
- http://www.securitytracker.com/id?1020660
- http://www.vupen.com/english/advisories/2008/2339
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44392
- http://secunia.com/advisories/31434PatchVendor Advisory
- http://www.ca.com/us/securityadvisor/vulninfo/vuln.aspx?id=36559
- http://www.securityfocus.com/archive/1/495397/100/0/threaded
- http://www.securityfocus.com/bid/30651
- http://www.securitytracker.com/id?1020658
- http://www.securitytracker.com/id?1020659
FAQ
What is CVE-2008-2926?
CVE-2008-2926 is a vulnerability with a CVSS score of 7.2 (HIGH). The kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, does not properly verify IOCTL requests, which allows local us...
How severe is CVE-2008-2926?
CVE-2008-2926 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-2926?
Check the references section above for vendor advisories and patch information. Affected products include: Broadcom Internet Security Suite, Ca Host Based Intrusion Prevention System, Ca Internet Security Suite 2008, Ca Personal Firewall 2007, Ca Personal Firewall 2008.