CVE-2023-1678
DriverGenius IOCTL mydrivers64.sys 0x9C40A0E0 memory corruption
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability classified as critical has been found in DriverGenius 9.70.0.346. This affects the function 0x9C40A0D8/0x9C40A0DC/0x9C40A0E0 in the library mydrivers64.sys of the component IOCTL Handler. The manipulation leads to memory corruption. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-224235.
Es wurde eine Schwachstelle in DriverGenius 9.70.0.346 entdeckt. Sie wurde als kritisch eingestuft. Es betrifft die Funktion 0x9C40A0D8/0x9C40A0DC/0x9C40A0E0 in der Bibliothek mydrivers64.sys der Komponente IOCTL Handler. Dank der Manipulation mit unbekannten Daten kann eine memory corruption-Schwachstelle ausgenutzt werden. Der Angriff muss lokal erfolgen. Der Exploit steht zur öffentlichen Verfügung.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-03-28 CVE Reserved
- 2023-03-28 CVE Published
- 2023-04-05 EPSS Updated
- 2024-08-02 CVE Updated
- 2024-08-02 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1678 | Related | |
https://vuldb.com/?id.224235 | Technical Description |
URL | Date | SRC |
---|---|---|
https://drive.google.com/file/d/1VWI0i6Zq-Fi55kbZI6l3dHCeBq-NOlJc/view | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Drivergenius Search vendor "Drivergenius" | Drivergenius Search vendor "Drivergenius" for product "Drivergenius" | 9.70.0.346 Search vendor "Drivergenius" for product "Drivergenius" and version "9.70.0.346" | - |
Affected
|