Vulnerability record · CVE-2016-4304 · published 6 January 2017
CVE-2016-4304: Kaspersky internet security improper access control vulnerability
Kaspersky · Internet Security
A denial of service vulnerability exists in the syscall filtering functionality of the Kaspersky Internet Security KLIF driver. A specially crafted native api call request can cause a access violation exception in KLIF kernel driver resulting in local denial of service. An attacker can run program from user-mode to trigger this vulnerability.
Description
A denial of service vulnerability exists in the syscall filtering functionality of the Kaspersky Internet Security KLIF driver. A specially crafted native api call request can cause a access violation exception in KLIF kernel driver resulting in local denial of service. An attacker can run program from user-mode to trigger this vulnerability.
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.securitytracker.com/id/1036702 | |
| http://www.securitytracker.com/id/1036703 | |
| http://www.talosintelligence.com/reports/TALOS-2016-0166/ | ExploitTechnical DescriptionThird Party AdvisoryVDB Entry |
| http://securitytracker.com/id/1036702 | Third Party AdvisoryVDB Entry |
| http://www.securitytracker.com/id/1036702 | |
| http://www.securitytracker.com/id/1036703 | |
| http://www.talosintelligence.com/reports/TALOS-2016-0166/ | ExploitTechnical DescriptionThird Party AdvisoryVDB Entry |
Track CVE-2016-4304 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2016-4304), CISA KEV, FIRST EPSS (scores of 2026-09-28). This page is refreshed as NVD updates the record.