VulnerabilityModified
CVE-2017-6007
A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean) allows local users to crash the OS via a malformed IOCTL call.
MEDIUM 5.5EPSS 0.40%
Does this matter?
Lower severity and a low EPSS score (0.40%). Track it; it rarely justifies an emergency change on its own.
Description
A kernel pool overflow in the driver hitmanpro37.sys in Sophos SurfRight HitmanPro before 3.7.20 Build 286 (included in the HitmanPro.Alert solution and Sophos Clean) allows local users to crash the OS via a malformed IOCTL call.
- CVSS 3.0
- 5.5 MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.40% probability · 34th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- sophos/hitmanpro
- Source
- cve@mitre.org
References
- https://trackwatch.com/kernel-pool-overflow-exploitation-in-real-world-windows-7/Exploit, Technical Description, Third Party Advisory
- https://www.nuitduhack.com/fr/planning/talk_10Third Party Advisory
- https://trackwatch.com/kernel-pool-overflow-exploitation-in-real-world-windows-7/Exploit, Technical Description, Third Party Advisory
- https://www.nuitduhack.com/fr/planning/talk_10Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.