Denial of Service Vulnerability in Comodo Antivirus
CVE-2019-3973
What is CVE-2019-3973?
Comodo Antivirus versions 11.0.0.6582 and earlier are affected by a Denial of Service vulnerability through CmdGuard.sys. This vulnerability allows a low privileged process to exploit cmdServicePort. The process can crash CmdVirth.exe, leading to decreased connection count for the port. By hollowing out the CmdVirth.exe instance with malicious code and sending a specially crafted message via the FilterSendMessage API, an out-of-bounds write can be triggered due to improper handling of buffer sizes during a memset operation, resulting in a kernel crash.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Comodo Antivirus Versions 11.0.0.6582 and below
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
