CVE-2023-1640

A vulnerability classified as problematic was found in IObit Malware Fighter 9.4.0.776. This vulnerability affects the function 0x222010 in the library ObCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224020.
Configurations

Configuration 1 (hide)

cpe:2.3:a:iobit:malware_fighter:9.4.0.776:*:*:*:*:*:*:*

History

30 Mar 2023, 16:30

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References (MISC) https://drive.google.com/file/d/1AcwSxTA0_zh7mmxU5J8WphRqg_mQsO-g/view - (MISC) https://drive.google.com/file/d/1AcwSxTA0_zh7mmxU5J8WphRqg_mQsO-g/view - Product, Third Party Advisory
References (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34 - (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34 - Broken Link
References (MISC) https://vuldb.com/?ctiid.224020 - (MISC) https://vuldb.com/?ctiid.224020 - Third Party Advisory
References (MISC) https://vuldb.com/?id.224020 - (MISC) https://vuldb.com/?id.224020 - Third Party Advisory
CPE cpe:2.3:a:iobit:malware_fighter:9.4.0.776:*:*:*:*:*:*:*
CWE CWE-404

27 Mar 2023, 12:40

Type Values Removed Values Added
New CVE

Information

Published : 2023-03-26 22:15

Updated : 2024-05-17 02:18


NVD link : CVE-2023-1640

Mitre link : CVE-2023-1640

CVE.ORG link : CVE-2023-1640


JSON object : View

Products Affected

iobit

  • malware_fighter
CWE
CWE-404

Improper Resource Shutdown or Release