CVE-2004-2125 describes a buffer overflow vulnerability in blackd.exe within BlackICE PC Protection 3.6 and earlier versions, specifically when application protection is disabled. This flaw allows a local attacker to achieve system privileges by manipulating the .INI file to include an excessively long packetLog.fileprefix value. With a CVSS score of 4.6 (AV:L/AC:L/Au:N/C:P/I:P/A:P), it is a low-severity vulnerability requiring local access and user interaction for exploitation, potentially leading to compromise of confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.6ecaCPE matchmatch criteria | cpe:2.3:a:iss:blackice_agent_server:3.6eca:*:*:*:*:*:*:* | ||
3.6cbdCPE matchmatch criteria | cpe:2.3:a:iss:blackice_pc_protection:3.6cbd:*:*:*:*:*:*:* | ||
3.6cbzCPE matchmatch criteria | cpe:2.3:a:iss:blackice_server_protection:3.6cbz:*:*:*:*:*:*:* | ||
3.6ecaCPE matchmatch criteria | cpe:2.3:a:iss:realsecure_desktop:3.6eca:*:*:*:*:*:*:* | ||
7.0ebgCPE matchmatch criteria | cpe:2.3:a:iss:realsecure_desktop:7.0ebg:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.