Vulnerability Details CVE-2019-3972
Comodo Antivirus versions 12.0.0.6810 and below are vulnerable to Denial of Service affecting CmdAgent.exe via an unprotected section object "<GUID>_CisSharedMemBuff". This section object is exposed by CmdAgent and contains a SharedMemoryDictionary object, which allows a low privileged process to modify the object data causing CmdAgent.exe to crash.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.9%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2019-3972
-
cpe:2.3:a:comodo:antivirus:1.0
-
cpe:2.3:a:comodo:antivirus:11.0.0.6582
-
cpe:2.3:a:comodo:antivirus:12.0.0.6810
-
cpe:2.3:a:comodo:antivirus:2.2
-
cpe:2.3:a:comodo:antivirus:8.1