CVE-2010-5075
Severity CVSS v4.0:
Pending analysis
Type:
CWE-189
Numeric Errors
Publication date:
28/12/2014
Last modified:
12/04/2025
Description
Integer overflow in aswFW.sys 5.0.594.0 in Avast! Internet Security 5.0 Korean Trial allows local users to cause a denial of service (memory corruption and panic) via a crafted IOCTL_ASWFW_COMM_PIDINFO_RESULTS DeviceIoControl request to \\.\aswFW.
Impact
Base Score 2.0
2.10
Severity 2.0
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:avast\!:avast\!_internet_security:5.0:*:*:*:korean_trial:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.securityfocus.com/bid/42148
- http://x90c.blogspot.com/2011/11/avast-internet-security-aswfwsys-ioctl.html
- http://x90c.blogspot.com/2011/12/bid-42148-my-avast-kernel-driver-0day_01.html
- https://web.archive.org/web/20120228033302/http://www.x90c.org/advisories/avast_internet_security_5.0_memory_corruption_advisory.txt
- http://www.securityfocus.com/bid/42148
- http://x90c.blogspot.com/2011/11/avast-internet-security-aswfwsys-ioctl.html
- http://x90c.blogspot.com/2011/12/bid-42148-my-avast-kernel-driver-0day_01.html
- https://web.archive.org/web/20120228033302/http://www.x90c.org/advisories/avast_internet_security_5.0_memory_corruption_advisory.txt



