Lucene search

K
cve[email protected]CVE-2024-1140
HistoryFeb 13, 2024 - 3:15 p.m.

CVE-2024-1140

2024-02-1315:15:08
CWE-125
web.nvd.nist.gov
12
cve-2024-1140
twister antivirus
out-of-bounds read
0x801120b8
ioctl
filmfd.sys
nvd

5.8 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H

5.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

Twister Antivirus v8.17 is vulnerable to an Out-of-bounds Read vulnerability by triggering the 0x801120B8 IOCTL code of the filmfd.sys driver.

Affected configurations

NVD
Node
filseclabtwister_antivirusMatch8.17

CNA Affected

[
  {
    "defaultStatus": "unknown",
    "platforms": [
      "Windows"
    ],
    "product": "Twister Antivirus",
    "vendor": "Filseclab",
    "versions": [
      {
        "status": "affected",
        "version": "8.17"
      }
    ]
  }
]

5.8 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H

5.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

Related for CVE-2024-1140