2.6

CVE-2015-8577

The Buffer Overflow Protection (BOP) feature in McAfee VirusScan Enterprise before 8.8 Patch 6 allocates memory with Read, Write, Execute (RWX) permissions at predictable addresses on 32-bit platforms when protecting another application, which allows attackers to bypass the DEP and ASLR protection mechanisms via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mcafee ≫ Virusscan Enterprise Version <= 8.8.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.42% 0.331
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 2.6 1.9 4.9
AV:L/AC:H/Au:N/C:P/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://blog.ensilo.com/the-av-vulnerability-that-bypasses-mitigations
http://breakingmalware.com/vulnerabilities/sedating-watchdog-abusing-security-products-bypass-mitigations/
http://www.securityfocus.com/bid/78810
https://kc.mcafee.com/corporate/index?page=content&id=SB10142
Vendor Advisory