Need help? Ask the community or hire an expert.
Go to Avira Answers
Nombre:EXP/CVE-2011-3402.C
Descubierto:04/12/2012
Tipo:Exploit
En circulacin (ITW):No
Nmero de infecciones comunicadas:Medio
Potencial de propagacin:Bajo
Potencial daino:Bajo
Fichero esttico:No
Tamao:~ 5.180 Bytes
Versin del VDF:7.11.52.132 - martes 4 de diciembre de 2012
Versin del IVDF:7.11.52.132 - martes 4 de diciembre de 2012

 General Alias:
   •  Kaspersky: Exploit.Win32.CVE-2011-3402.c


Plataformas / Sistemas operativos:
   • Windows XP
   • Windows 2003
    Windows Vista
    Windows Server 2008
    Windows 7


Efectos secundarios:
    Se puede utilizar para ejecutar un cdigo malintencionado
   • Emplea vulnerabilidades de software
CVE-2011-3402

 Deteccin especial Descripcin:
CVE-2011-3402

The exploit EXP/CVE-2011-3402 is targeting the True-Type-Font parsing engine which is run in kernel-mode. This fact makes this exploit very dangerous as an attacker can gain system level privileges.

An exploit gives the attacker the ability to install programs/drivers, view, change, or delete data or he could create new accounts with full user rights.

In an e-mail scenario the exploit needs user interaction (for instance by opening a malicious word document) to get executed. The discovered exploit comes in the form of a Microsoft word document.

Other possibilities may include using embedded TTF fonts in other types of files such as PDF.

설명 삽입자 Martin Muench   2012년 12월 30일 일요일
설명 업데이트 Martin Muench   2012년 12월 30일 일요일

뒤로 . . . .
https:// 이 창은 보안을 위해 암호화되었습니다.