Back to Database
Status published
High
CVE-2008-1518
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and...
Vulnerability Description
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 and 7.0 allows local users to gain privileges via an IOCTL 0x800520e8 call.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-1518
Credits & Attribution
No credits recorded in the NVD database.
References
- http://securitytracker.com/id?1020195
- http://www.vupen.com/english/advisories/2008/1739
- http://www.kaspersky.com/technews?id=203038727
- http://secunia.com/advisories/30534
- https://exchange.xforce.ibmcloud.com/vulnerabilities/42849
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=704
- http://securitytracker.com/id?1020196
More from kaspersky lab
View All →CVE-2009-4452
Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837),...
Medium
6.8
CVE-2009-0449
Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0...
High
7.2
CVE-2008-5426
Kaspersky Internet Security Suite 2009 does not properly handle (1)...
Medium
4.3
CVE-2007-5086
Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do...
Low
2.1
CVE-2007-5043
Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters...
Medium
4.4
Affected Vendor
kaspersky lab
View all reports →Affected Software
kaspersky anti-virus, kaspersky internet security
Vulnerable Versions:
6.0, 7.0
Timeline
Official Publish:
June 5th, 2008
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.