Race Condition Vulnerability in BitDefender Total Security 2010 on Windows XP
CVE-2010-5154

Currently unrated

Key Information:

Vendor
CVE Published:
25 August 2012

What is CVE-2010-5154?

A race condition in BitDefender Total Security 2010 allows local users to bypass kernel-mode hook handlers. This vulnerability can enable attackers to execute potentially harmful code that traditional signature-based malware detection would ordinarily prevent. The exploitation occurs through specific changes to user-space memory during the execution of these hook handlers, a method known as an argument-switch or KHOBE attack. While there are discussions regarding the validity of this issue, it represents a significant concern for users relying on BitDefender for security.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.