查看: 2713|回复: 7
收起左侧

KLV07-07.Klif.sys calling NtOpenProcess vulnerability漏洞近期修复

[复制链接]
16000
发表于 2007-6-10 17:48:39 | 显示全部楼层 |阅读模式
An advisory has recently been published on rootkit.com regarding a vulnerability in KAV 7.0. Unfortunately, the authors of this material chose not to adhere to industry standard practice, and contact the vendor prior to disclosing vulnerability details. Although the authors claim that all attempts to inform Kaspersky Lab about this vulnerability were ignored, this is not the case: if we had been informed, this issue would have been addressed long ago.
The following products are vulnerable:
  • Kaspersky Internet Security 6.0/7.0
  • Kaspersky Anti-Virus 6.0/7.0
  • Kaspersky Anti-Virus for Windows Workstations 6.0
  • Kaspersky Anti-Virus 6.0 for Windows Servers
These products are vulnerable only when run on the following OSs:
  • Windows NT
  • Windows 2000
  • Windows 2003 x86
  • Windows XP x86
Products running on other Microsoft OS are not affected by this issue.
This vulnerability is classified as low risk because of its local nature: the user has to manually launch the exploit on his computer. Exploiting the vulnerability results in a critical system error (BSOD) but does not escalate privileges or provide a remote user with control over the computer.
A patch will be issued for this vulnerability in the very near future. The patch will install itself automatically. Additional information will be provided about patch release.


http://www.kaspersky.com/technews?id=203038695
E文不是很好,大概是说针对NT 2000 2003 64位系统的漏洞吧,6,7系列都会发生,近期会修复

E文专业词汇太多,强人来翻译吧

评分

参与人数 1经验 +1 收起 理由
wangjay1980 + 1 加分鼓励

查看全部评分

清风千秋雪
发表于 2007-6-10 18:03:59 | 显示全部楼层
支持一下。
Redevil
发表于 2007-6-10 18:52:41 | 显示全部楼层
大致意思是最近在 rootkit.com 上刊登了一篇文章指出了KAV7的一个漏洞,不过卡巴觉得, rootkit.com应该在第一时间与卡巴实验室联系,而不是只在自己的网站上公布这个消息。但是在此前提出漏洞的作者声称已经多次向卡巴反映过这个问题,都被卡巴给忽视了,卡巴认为这不是事实,如果他们被通知了,那一定会立刻把这个问题提上议事日程

以下版本的卡巴产品有这个漏洞:

  • Kaspersky Internet Security 6.0/7.0
  • Kaspersky Anti-Virus 6.0/7.0
  • Kaspersky Anti-Virus for Windows Workstations 6.0
  • Kaspersky Anti-Virus 6.0 for Windows Servers
这些卡巴的产品运行在以下这些操作系统会有漏洞:

  • Windows NT
  • Windows 2000
  • Windows 2003 x86
  • Windows XP x86


[ 本帖最后由 Redevil 于 2007-6-10 18:58 编辑 ]
mds
发表于 2007-6-10 19:17:11 | 显示全部楼层

回复 #3 Redevil 的帖子

原来如此!感谢翻译!
star_xing
发表于 2007-6-10 19:34:24 | 显示全部楼层
我用vista  
yahoo121
发表于 2007-6-10 23:06:30 | 显示全部楼层
呵呵呵,谢谢提醒,也多谢版主翻译……
bookbin
发表于 2007-6-11 00:58:57 | 显示全部楼层
补充下,kaspersky 把这个漏洞定义为低危险级别,因为只是计算机本地用户才能手动进行这个漏洞的操作,远程则无法控制。故从网络安全的角度说,此漏洞对用户的威胁不大。
小虎子
发表于 2007-6-11 11:11:13 | 显示全部楼层
不错态度多好啊
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-17 15:40 , Processed in 0.139142 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表