Comodo Internet Security 0-Day Flaw Triggers Windows System Crashes
ID: 67be9359-9188-5e87-bbeb-b627acf08a92
STIX ID: report--67be9359-9188-5e87-bbeb-b627acf08a92
Feed Name: GBHackers
Security researcher Marcus Hutchins disclosed a critical zero-day (ComoDoS) in Comodo Internet Security’s kernel firewall driver (Inspect.sys) that permits remote crashing (BSOD) of Windows hosts via a single malformed IPv6 packet by triggering an unsigned integer underflow in the IPv6 extension header parser. The PoC is public, the vendor did not respond to disclosure, the flaw bypasses firewall rules because it is in the driver parsing stage, and mitigations include monitoring or blocking IPv6 extension headers (especially Destination Options, Next Header = 60) at network edges until a patch is released.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
