CVE-2019-14694
Last modified
CVE-2019-14694 is a vulnerability of currently unknown severity. A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be triggered due to a race condition when handling IRP_MJ_CLEANUP requests in the minifilter for directory change notifications. This allows an attacker to cause a denial of service (BSOD) when an executable is run inside the container.. EPSS estimates a 0.41% chance of exploitation in the next 30 days.
Description
A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be triggered due to a race condition when handling IRP_MJ_CLEANUP requests in the minifilter for directory change notifications. This allows an attacker to cause a denial of service (BSOD) when an executable is run inside the container.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Comodo | Antivirus | 12.0.0.6870 |
References
- http://rce4fun.blogspot.com/2019/08/comodo-antivirus-sandbox-race-condition.htmlExploit, Third Party Advisory
- http://rce4fun.blogspot.com/2019/08/comodo-antivirus-sandbox-race-condition.htmlExploit, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-14694?
How severe is CVE-2019-14694?
How do I fix CVE-2019-14694?
Are you affected by CVE-2019-14694?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
