We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-23441

Vba32 Antivirus v3.36.0 - Denial of Service (DoS)



AssignerFluid Attacks
Reserved2024-01-16
Published2024-01-29
Updated2024-09-05

Description

Vba32 Antivirus v3.36.0 is vulnerable to a Denial of Service vulnerability by triggering the 0x2220A7 IOCTL code of the Vba32m64.sys driver.



MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Problem types

CWE-125 Out-of-bounds Read

Product status

Default status
0x4002446000

3.36.0
affected

References

https://fluidattacks.com/advisories/rollins/ third-party-advisory

https://www.anti-virus.by/vba32 product

cve.org CVE-2024-23441

nvd.nist.gov CVE-2024-23441

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-23441
Subscribe to our newsletter to learn more about our work.