← back
CVE-2023-1640

IObit Malware Fighter IOCTL ObCallbackProcess.sys 0x222010 denial of service

CVSS 5.5 MEDIUMEPSS 0.3%CWE-404
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 5.5EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
26 Mar 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability classified as problematic was found in IObit Malware Fighter 9.4.0.776. This vulnerability affects the function 0x222010 in the library ObCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224020.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products
IObit · Malware Fighter

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →