CVE-2019-14694 describes a use-after-free vulnerability in the sandbox container of Comodo Antivirus 12.0.0.6870, specifically within the cmdguard.sys minifilter. This flaw, triggered by a race condition during IRP_MJ_CLEANUP requests, allows a local attacker to cause a denial of service (Blue Screen of Death) when an executable is run inside the container. Rated Medium severity with a CVSS score of 4.7, it requires low privileges and high attack complexity. There is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
12.0.0.6870CPE matchmatch criteria | cpe:2.3:a:comodo:antivirus:12.0.0.6870:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.