← Back

CVE-2009-2450

nvd nist
Published: Jul 13, 2009Modified: Apr 23, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

The OAmon.sys kernel driver 3.1.0.0 and earlier in Tall Emu Online Armor Personal Firewall AV+ before 3.5.0.12, and Personal Firewall 3.5 before 3.5.0.14, allows local users to gain privileges via crafted METHOD_NEITHER IOCTL requests to \Device\OAmon containing arbitrary kernel addresses, as demonstrated using the 0x830020C3 IOCTL.

Affected (16)

2 products
Personal Firewall
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Tallemu
Up to 3.5.0.11
Version 3.5.0.6
Version 3.5.0.9
Tallemu
Up to 3.5.0.13
Version 3.5.0.10
Version 3.5.0.11
Version 3.5.0.12
Version 3.5.0.1
Version 3.5.0.2
Version 3.5.0.3
Version 3.5.0.4
Version 3.5.0.5
Version 3.5.0.6
Version 3.5.0.7
Version 3.5.0.8
Version 3.5.0.9

References (10)

Source: cve@mitre.org
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.