CVE-2023-1679
DriverGenius IOCTL mydrivers64.sys 0x9C40A108 memory corruption
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability classified as critical was found in DriverGenius 9.70.0.346. This vulnerability affects the function 0x9C406104/0x9C40A108 in the library mydrivers64.sys of the component IOCTL Handler. The manipulation leads to memory corruption. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224236.
In DriverGenius 9.70.0.346 wurde eine Schwachstelle entdeckt. Sie wurde als kritisch eingestuft. Das betrifft die Funktion 0x9C406104/0x9C40A108 in der Bibliothek mydrivers64.sys der Komponente IOCTL Handler. Dank Manipulation mit unbekannten Daten kann eine memory corruption-Schwachstelle ausgenutzt werden. Die Umsetzung des Angriffs hat dabei lokal zu erfolgen. Der Exploit steht zur öffentlichen Verfügung.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-03-28 CVE Reserved
- 2023-03-28 CVE Published
- 2023-04-05 EPSS Updated
- 2024-08-02 CVE Updated
- 2024-08-02 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1679 | Related | |
https://vuldb.com/?id.224236 | Technical Description |
URL | Date | SRC |
---|---|---|
https://drive.google.com/file/d/1Iz4VTUUVDveZlgtxN9WkvdygHkD1BUCr/view | 2024-08-02 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Drivergenius Search vendor "Drivergenius" | Drivergenius Search vendor "Drivergenius" for product "Drivergenius" | 9.70.0.346 Search vendor "Drivergenius" for product "Drivergenius" and version "9.70.0.346" | - |
Affected
|