vendor:
Internet Security
by:
Nikita Tarakanov (CISS Research Team)
7,8
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: Internet Security
Affected Version From: 9.0.851
Affected Version To: 9.0.0.832
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2010
AVG Internet Security 0day Local DoS Exploit
This exploit is a local denial of service vulnerability in AVG Internet Security. It is triggered by sending a malicious DeviceIoControl request to the avgtdi.sys driver. This causes the system to crash and the driver to become unresponsive.
Mitigation:
Update to the latest version of AVG Internet Security.