Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.811803
Category:Privilege escalation
Title:Bitdefender Total Security 'bdfwfpf' Kernel Driver Privilege Escalation Vulnerability
Summary:Bitdefender Total Security is prone to a local privilege escalation vulnerability.
Description:Summary:
Bitdefender Total Security is prone to a local privilege escalation vulnerability.

Vulnerability Insight:
The flaw exists due to an error with the
processing of the 0x8000E038 IOCTL in the bdfwfpf driver. The issue results
from the lack of validating the existence of an object prior to performing
operations on the object.

Vulnerability Impact:
Successful exploitation will allow local
attacker to execute arbitrary code in the context of SYSTEM with elevated
privileges.

Affected Software/OS:
Bitdefender Total Security 21.0.24.62.

Solution:
Update to version 21.2.25.30 (AV 2017), 22.0.8.114 (AV 2018) or later.

CVSS Score:
6.9

CVSS Vector:
AV:L/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2017-10950
BugTraq ID: 100418
http://www.securityfocus.com/bid/100418
https://zerodayinitiative.com/advisories/ZDI-17-693
CopyrightCopyright (C) 2017 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.