Back to Database
Status published
High
CVE-2009-0449
Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0...
Vulnerability Description
Buffer overflow in klim5.sys in Kaspersky Anti-Virus for Workstations 6.0 and Anti-Virus 2008 allows local users to gain privileges via an IOCTL 0x80052110 call.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-0449
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.reversemode.com/index.php?option=com_content&task=view&id=60&Itemid=1
- http://kartoffel.reversemode.com/downloads/kaspersky_klim5_plugin.zip
- http://www.securitytracker.com/id?1021661
- http://www.wintercore.com/advisories/advisory_W020209.html
- http://www.securityfocus.com/archive/1/500606/100/0/threaded
- http://www.securityfocus.com/bid/33561
- http://secunia.com/advisories/33788
More from kaspersky lab
View All →CVE-2009-4452
Kaspersky Anti-Virus 5.0 (5.0.712); Antivirus Personal 5.0.x; Anti-Virus 6.0 (6.0.3.837),...
Medium
6.8
CVE-2008-5426
Kaspersky Internet Security Suite 2009 does not properly handle (1)...
Medium
4.3
CVE-2008-1518
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and...
High
7.2
CVE-2007-5086
Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do...
Low
2.1
CVE-2007-5043
Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters...
Medium
4.4
Affected Vendor
kaspersky lab
View all reports →Affected Software
kaspersky anti-virus
Vulnerable Versions:
6.0, 2008
Timeline
Official Publish:
February 5th, 2009
Last Modified:
August 7th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.