sla-cker / google-security-research

Automatically exported from code.google.com/p/google-security-research
0 stars 0 forks source link

ESET Emulation Vulnerability #456

Closed GoogleCodeExporter closed 9 years ago

GoogleCodeExporter commented 9 years ago
A vulnerability exists managing a shadow stack in ESET Antivirus.

The attached report and exploit was physically given to four ESET engineers at 
a meeting in Mountain View on Friday 19th June.

This vulnerability allows complete remote root/SYSTEM command execution on all 
ESET platforms and products.

This video was played to them to help convey the severity.

https://drive.google.com/a/google.com/file/d/0B9IF3YQvo7AfT0xYTGxCT09TVEE/view

Original issue reported on code.google.com by tav...@google.com on 20 Jun 2015 at 1:02

GoogleCodeExporter commented 9 years ago
Updated attachments.

Original comment by tav...@google.com on 22 Jun 2015 at 11:27

Attachments:

GoogleCodeExporter commented 9 years ago

Original comment by cev...@google.com on 23 Jun 2015 at 9:31

GoogleCodeExporter commented 9 years ago
Public link for the video: https://www.youtube.com/watch?v=Sk-CuFMXods

Original comment by tav...@google.com on 24 Jun 2015 at 12:02