CVE-2023-1640

A vulnerability classified as problematic was found in IObit Malware Fighter 9.4.0.776. This vulnerability affects the function 0x222010 in the library ObCallbackProcess.sys of the component IOCTL Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224020.
Configurations

Configuration 1 (hide)

cpe:2.3:a:iobit:malware_fighter:9.4.0.776:*:*:*:*:*:*:*

History

30 Oct 2023, 19:26

Type Values Removed Values Added
References (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1640 - (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1640 - Exploit, Third Party Advisory

21 Oct 2023, 14:15

Type Values Removed Values Added
References
  • {'url': 'https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34', 'name': 'https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34', 'tags': ['Broken Link'], 'refsource': 'MISC'}
  • (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/CVE-2023-1640 -

30 Mar 2023, 16:30

Type Values Removed Values Added
First Time Iobit malware Fighter
Iobit
CWE CWE-404
CPE cpe:2.3:a:iobit:malware_fighter:9.4.0.776:*:*:*:*:*:*:*
References (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34 - (MISC) https://github.com/zeze-zeze/WindowsKernelVuln/tree/master/unassigned34 - Broken Link
References (MISC) https://drive.google.com/file/d/1AcwSxTA0_zh7mmxU5J8WphRqg_mQsO-g/view - (MISC) https://drive.google.com/file/d/1AcwSxTA0_zh7mmxU5J8WphRqg_mQsO-g/view - Product, Third Party Advisory
References (MISC) https://vuldb.com/?id.224020 - (MISC) https://vuldb.com/?id.224020 - Third Party Advisory
References (MISC) https://vuldb.com/?ctiid.224020 - (MISC) https://vuldb.com/?ctiid.224020 - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5

26 Mar 2023, 22:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-03-26 22:15

Updated : 2024-04-11 01:18


NVD link : CVE-2023-1640

Mitre link : CVE-2023-1640

CVE.ORG link : CVE-2023-1640


JSON object : View

Products Affected

iobit

  • malware_fighter
CWE
CWE-404

Improper Resource Shutdown or Release