Comodo Internet Security before 5.10.228257.2253 on Windows 7 x64 allows local users to cause a denial of service (system crash) via a crafted 32-bit Portable Executable (PE) file with a kernel ImageBase value.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1026982 | vdb entry |
http://www.securityfocus.com/bid/53163 | vdb entry |
http://www.comodo.com/home/download/release-notes.php?p=anti-malware | |
http://archives.neohapsis.com/archives/bugtraq/2012-04/0139.html | exploit mailing list |
http://secunia.com/advisories/48928 | third party advisory |