// For flags

CVE-2006-4541

Internet Security Systems 3.6 BlackICE - Local Denial of Service

Severity Score

4.6
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

RapDrv.sys in BlackICE PC Protection 3.6.cpn, cpj, cpiE, and possibly 3.6 and earlier, allows local users to cause a denial of service (crash) via a NULL third argument to the NtOpenSection API function. NOTE: it was later reported that 3.6.cqn is also affected.

RapDrv.sys en BlackICE PC Protection 3.6.cpn, cpj, cpiE, y posiblemente 3.6 y anteriores, permite a usuarios locales provocar denegación de servicio (caida) a través de un tercer argumento NULL a la función NtOpenSection API. NOTA: Posteriormente fue notificado que 3.6.cqn también se ve afectado.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-09-01 First Exploit
  • 2006-09-05 CVE Reserved
  • 2006-09-05 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Iss
Search vendor "Iss"
Blackice Pc Protection
Search vendor "Iss" for product "Blackice Pc Protection"
<= 3.6
Search vendor "Iss" for product "Blackice Pc Protection" and version " <= 3.6"
-
Affected
Iss
Search vendor "Iss"
Blackice Pc Protection
Search vendor "Iss" for product "Blackice Pc Protection"
3.6cpie
Search vendor "Iss" for product "Blackice Pc Protection" and version "3.6cpie"
-
Affected
Iss
Search vendor "Iss"
Blackice Pc Protection
Search vendor "Iss" for product "Blackice Pc Protection"
3.6cpj
Search vendor "Iss" for product "Blackice Pc Protection" and version "3.6cpj"
-
Affected
Iss
Search vendor "Iss"
Blackice Pc Protection
Search vendor "Iss" for product "Blackice Pc Protection"
3.6cpn
Search vendor "Iss" for product "Blackice Pc Protection" and version "3.6cpn"
-
Affected