vendor:
Kaspersky Antivirus
by:
Google Security Research
7.5
CVSS
HIGH
Function Pointer Dereference
824
CWE
Product Name: Kaspersky Antivirus
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: No
Related CWE: Unknown
CPE: Unknown
Platforms Tested: Windows, Linux, Mac
Unknown
Fuzzing the DEX file format found a crash that loads a function pointer from an attacker controlled pointer
The crash occurs when loading a function pointer from an attacker-controlled pointer, resulting in a call to an unmapped address. This vulnerability can be exploited for remote, zero-interaction code execution as NT AUTHORITYSYSTEM on any system with Kaspersky Antivirus. The exploit has been tested on Windows, Linux, Mac, and a product using the Kaspersky SDK (ZoneAlarm Pro).
Mitigation:
Unknown