CVE-2017-9811
Description
The kluser is able to interact with the kav4fs-control binary in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (version 8.0.4.312). By abusing the quarantine read and write operations, it is possible to elevate the privileges to root.
In plain language
AI Worth attentionCVE-2017-9811 is a serious security flaw in Kaspersky Anti-Virus for Linux File Server (before version 8.0.4.312) that can let an unauthorized person take full control of your Linux server; you should act if you run this product.
CVE-2017-9811 is an authorization/privilege-escalation weakness (CWE-20) in Kaspersky Anti-Virus for Linux File Server before Maintenance Pack 2 Critical Fix 4 (8.0.4.312) that lets an attacker interact with the antivirus control tool to change permissions and gain full system control, without needing authentication or user interaction (attack vector described as network).
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsAttack Graph
Click technique nodes for MITRE ATT&CK details · drag to pan · Ctrl/⌘ + scroll to zoom, or go fullscreen.
MITRE ATT&CK
1 techniqueReferences
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2017-9811 and every CVE in our database. Create a free account — no credit card required.
Create Free Account