CVE-2015-8577

critical

Description

The Buffer Overflow Protection (BOP) feature in McAfee VirusScan Enterprise before 8.8 Patch 6 allocates memory with Read, Write, Execute (RWX) permissions at predictable addresses on 32-bit platforms when protecting another application, which allows attackers to bypass the DEP and ASLR protection mechanisms via unspecified vectors.

References

https://kc.mcafee.com/corporate/index?page=content&id=SB10142

http://www.securityfocus.com/bid/78810

http://breakingmalware.com/vulnerabilities/sedating-watchdog-abusing-security-products-bypass-mitigations/

http://blog.ensilo.com/the-av-vulnerability-that-bypasses-mitigations

Details

Source: Mitre, NVD

Published: 2015-12-16

Updated: 2016-05-26

Risk Information

CVSS v2

Base Score: 2.6

Vector: CVSS2#AV:L/AC:H/Au:N/C:P/I:P/A:N

Severity: Low

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Severity: Critical